Forg365 is a newly identified phishing-as-a-service (PhaaS) platform explicitly targeting Microsoft 365 accounts. Security researchers found it employs sophisticated methods such as adversary-in-the-middle (AiTM) attacks and device code phishing to compromise accounts.
Forg365 stands out for its AI-assisted generation of phishing lures, mimicking trusted business communications while employing tactics like AiTM for session theft and persistent access techniques via browser extensions. The use of these advanced methods marks a significant evolution in phishing capabilities.
The platform is noted for its integration with legitimate email delivery services like Amazon SES and Twilio SendGrid, masking its phishing activity within normal email traffic. Forg365 is available through a subscription model, priced at $400 monthly or $3,800 annually, reflecting the industrialization of such cybercrime operations.
Forg365's ability to execute complex phishing campaigns with such sophistication poses a significant threat to businesses relying on Microsoft services. The lowered barriers for executing these advanced techniques suggest a potential increase in such attacks, challenging the security frameworks of affected organizations.
✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →
One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.
One email a day. Unsubscribe in one click, any time.
Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.
▶ Play today's briefNew every morning, and the back catalogue is archived by date.
Forg365, a new phishing-as-a-service operation, targets Microsoft 365 accounts utilizing sophisticated device code phishing and adversary-in-the-middle (AitM) techniques. This development is significant as it lowers the barrier for threat actors to execute complex phishing campaigns, potentially increasing the frequency and sophistication of attacks on Microsoft 365 users.
Forg365, a new phishing-as-a-service platform, targets Microsoft 365 accounts using AI for lure generation and other advanced phishing techniques. Its integration of adversary-in-the-middle methods and browser extensions for persistent access marks a significant evolution in phishing capabilities, posing a severe threat to numerous businesses reliant on Microsoft services.
The ARToken PhaaS platform has been linked to the infamous EvilTokens, offering advanced phishing tools targeting Microsoft 365. Its capabilities allow attackers to steal authentication tokens and bypass multi-factor authentication, posing significant risks for enterprise security.