Market Cap: $3.6793T -2.630%
Volume(24h): $210.1238B 27.900%
  • Market Cap: $3.6793T -2.630%
  • Volume(24h): $210.1238B 27.900%
  • Fear & Greed Index:
  • Market Cap: $3.6793T -2.630%
Cryptos
Topics
Cryptospedia
News
CryptosTopics
Videos
Top News
Cryptos
Topics
Cryptospedia
News
CryptosTopics
Videos
bitcoin
bitcoin

$113631.479686 USD

-2.00%

ethereum
ethereum

$3520.743224 USD

-5.26%

xrp
xrp

$2.975668 USD

-1.41%

tether
tether

$0.999590 USD

-0.04%

bnb
bnb

$765.480635 USD

-2.81%

solana
solana

$164.408416 USD

-4.17%

usd-coin
usd-coin

$0.999790 USD

-0.03%

tron
tron

$0.326752 USD

-0.10%

dogecoin
dogecoin

$0.201954 USD

-3.61%

cardano
cardano

$0.722537 USD

-2.09%

hyperliquid
hyperliquid

$38.070603 USD

-8.41%

sui
sui

$3.486261 USD

-3.77%

stellar
stellar

$0.386280 USD

-3.08%

chainlink
chainlink

$16.205186 USD

-4.34%

bitcoin-cash
bitcoin-cash

$540.533382 USD

-4.15%

Cryptocurrency News Articles

Mamba 2FA Phishing Platform Targets Microsoft 365 Accounts in AiTM Intrusions

Oct 09, 2024 at 09:55 pm

Threat actors have been using the newly emergent Mamba 2FA phishing-as-a-service platform to compromise Microsoft 365 accounts in adversary-in-the-middle intrusions

Mamba 2FA Phishing Platform Targets Microsoft 365 Accounts in AiTM Intrusions

Threat actors are now using the Mamba 2FA phishing-as-a-service platform to compromise Microsoft 365 accounts in adversary-in-the-middle (AiTM) attacks, BleepingComputer reports. Mamba 2FA's AiTM attacks against Microsoft 365 accounts are enabled by proxy relays and the Socket.IO JavaScript library, which allows for one-time passcode and authentication cookie access and communications between Microsoft 365 service phishing pages and relay servers, respectively, according to a report from Sekoia. The attackers then use a Telegram bot to enable transmission of stolen credentials and authentication cookies, Sekoia researchers found. They also noted improvements in Mamba 2FA since it was first reported by Any.Run in June. These enhancements include Mamba 2FA's use of IPRoyal proxy servers, regularly rotated phishing URLs, and benign content on HTML attachments to better conceal malicious activity. The findings should prompt organizations to bolster their defenses against AiTM intrusions launched by PhaaS operations by implementing certificate-based authentication, geo-blocking, hardware security keys, device allowlisting, IP allowlisting, and reduced token lifespans.

Original source:scworld

Disclaimer:info@kdj.com

The information provided is not trading advice. kdj.com does not assume any responsibility for any investments made based on the information provided in this article. Cryptocurrencies are highly volatile and it is highly recommended that you invest with caution after thorough research!

If you believe that the content used on this website infringes your copyright, please contact us immediately (info@kdj.com) and we will delete it promptly.

Other articles published on Aug 03, 2025