Kali365 PhaaS
campaign · campaign:fbi-psa260521-kali365-phaas-oauth-device-code-m365-mfa-bypass
Telegram-distributed phishing-as-a-service exploiting the OAuth device-code flow for persistent Microsoft 365 token capture bypassing MFA (FBI PSA260521).
Coverage
0
first 2026-05-23 → last –
no data
Latest activity
–
no entry about it yet
Peak priority
·
no entry about it yet
Targets
·
no sector or region stated
Sources cited
0
0 hosts
Story timeline
No published entries reference this entity yet.
Entries about Kali365 PhaaS
No published entry is about this entity yet · an entry attaches by registry key, by the entity's name or a public alias in its title or body, or (for CVE entities) by exact CVE id.