Modern phishing kits can steal authenticated sessions from Microsoft 365 and Google accounts in real time, even when multi-factor authentication (MFA) is enabled, costing as little as $120 for ten days. This ecosystem has evolved to offer dedicated tooling, subscription models, customer support, and rapid infrastructure turnover, making advanced phishing attacks accessible to a wide range of actors with limited technical skills.
This development matters because it highlights the increasing sophistication and accessibility of phishing tools, which can now bypass MFA and operate at scale, posing significant risks to enterprise security. Developers and tech professionals should focus on robust identity verification beyond traditional MFA methods to mitigate these threats.
Read the full article at Malware Analysis, News and Indicators - Latest topics
Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.

![[AINews] The Unreasonable Effectiveness of Closing the Loop](/_next/image?url=https%3A%2F%2Fmedia.nemati.ai%2Fmedia%2Fblog%2Fimages%2Farticles%2F600e22851bc7453b.webp&w=3840&q=75)



