Microsoft Dismantles AI‑Driven Scam That Breached 12,000 Accounts

TL;DR Summary
Microsoft led an industry-wide takedown of EvilTokens, an AI-assisted platform that automated mass email compromises, using a device-code OAuth workflow to hijack Microsoft accounts and identify high‑value targets. The service compromised about 12,000 accounts across 10,000 organizations before authorities seized 50 sites and 150 domains and the UK arrested two men. The incident underscores the need for strong identity protections and independent verification of payment-change requests.
- Microsoft disrupts AI-assisted platform that compromised 12,000 Ars Technica
- Unmasking EvilTokens: Getting to the root of device code phishing Microsoft
- Microsoft’s EvilTokens takedown sheds light on state of AI-powered cybercrime csoonline.com
- Consumer Protection Tuesday: Taking Down Evil Tokens Coinbase
- Microsoft Takes Down EvilTokens Device-Code Phishing Service Tied to 12,000 Inbox Compromises The Hacker News
Reading Insights
Total Reads
0
Unique Readers
7
Time Saved
5 min
vs 5 min read
Condensed
93%
988 → 66 words
Want the full story? Read the original article
Read on Ars Technica