重要なインサイト
EvilTokens is a phishing-as-a-service platform that sidesteps traditional defenses by hijacking account access through a legitimate Microsoft login flow—then deploys AI to automate business email compromise at scale.
Unlike credential-harvesting attacks, EvilTokens never asks victims to enter a password on a fake page. Instead, its targets authenticate directly on Microsoft infrastructure while the platform silently captures OAuth tokens and converts them into a persistent, fully-operational BEC toolkit. Join Abnormal Intelligence to learn how EvilTokens behaves, how it bypasses conventional controls, and what security teams can do to minimize exposure.
Fill out the form to watch the webinar on demand.
ISC2 CPEを獲得 (1クレジット)
このリソースはISC2 CPE対象です。 継続教育クレジットを申請するには、クレジット申請フォームをご提出ください。
