Cyber News / Article / BigBear 2.0 Evilginx2 Phishing Campaign Bypasses Microsoft 365 MFA With Session Cookie Theft

BigBear 2.0 Evilginx2 Phishing Campaign Bypasses Microsoft 365 MFA With Session Cookie Theft
<p>BigBear 2.0 is a phishing operation designed to steal proof that a user has already passed multi-factor authentication. It targets Microsoft 365 accounts through convincing sign-in links, then takes over the logged-in browser session rather than attempting to break the authentication factor. The operation is a rebranded Evilginx2 phishing framework that targets Microsoft 365 accounts. […]</p> <p>The post <a href="https://cybersecuritynews.com/bigbear-2-0-evilginx2/">BigBear 2.0 Evilginx2 Phishing Campaign Bypasses Microsoft 365 MFA With Session Cookie Theft</a> appeared first on <a href="https://cybersecuritynews.com">Cyber Security News</a>.</p>
Related articles
Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks
4 days ago
JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies
4 days ago
Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters
7 days ago
You might Also like

Microsoft: Windows Server 2025 changes causing app crashes

FreeIPA Flaw Chain Lets Anonymous Clients Create Reusable Administrator Credentials

