security: Unmasking EvilTokens: Getting to the root of device code phishing
Microsoft Security Blog
2026-09-22
Microsoft says it helped disrupt EvilTokens, a phishing-as-a-service platform used for device code phishing and token theft. The post describes AI-assisted lures, automated infrastructure, and Microsoft DCU’s role in the disruption.