FBI warns of Kali phishing scam targeting Microsoft OAuth tokens

The FBI has issued a warning about a new phishing kit called Kali365 that targets Microsoft OAuth tokens. The kit is being offered on Telegram and uses AI-generated lures.

The warning highlights how Kali365 lowers the barrier of entry for less-technical attackers. It provides access to AI-generated phishing lures that can compromise Microsoft accounts through OAuth tokens.

관련 기사

Illustration of a hacker exploiting Meta's AI chatbot to hijack Instagram accounts by changing email addresses and bypassing security.
AI에 의해 생성된 이미지

Meta patches ai chatbot flaw used to hijack instagram accounts

AI에 의해 보고됨 AI에 의해 생성된 이미지

Hackers exploited Meta's AI support chatbot to take over Instagram accounts by tricking it into changing associated email addresses. The vulnerability allowed password resets without two-factor authentication after matching locations via VPN. Meta resolved the issue with an emergency patch on May 29.

Seventy-three Microsoft open source packages were compromised late last week with malware that steals credentials from cloud services and developer tools. The malicious code activates when opened in AI coding agents.

AI에 의해 보고됨

Microsoft has alerted users that hackers are targeting password reset processes to breach accounts. The activity is attributed to the group Storm-2949.

Developer platform Socket has identified a malware known as TrapDoor that is targeting crypto and AI developers.

AI에 의해 보고됨

홍콩의 한 여성이 인공지능 기반의 가짜 암호화폐 거래 앱을 이용한 투자 사기에 속아 100만 홍콩달러 이상의 금전적 피해를 입었다. 홍콩 경찰은 지난 일주일 동안 70건이 넘는 유사 투자 사기를 접수했으며, 총 피해액은 5,000만 홍콩달러를 넘어섰다.

이 웹사이트는 쿠키를 사용합니다

사이트를 개선하기 위해 분석을 위한 쿠키를 사용합니다. 자세한 내용은 개인정보 보호 정책을 읽으세요.
거부