
highPhishing
BigBear 2.0 Phishing Service Bypasses MFA at 258 Organizations
A phishing-as-a-service framework identified as BigBear 2.0 has been used in a global campaign to bypass multi-factor authentication and compromise Microsoft 365 accounts at 258 organizations, resulting in the theft of more than 5,000 credentials. The operation leverages real-time token interception and proxy-based techniques to circumvent MFA protections, according to reporting by BleepingComputer.
BleepingComputer1 min read