‘Tycoon’ Malware Kit Bypasses Microsoft, Google MFA

Source: hayaletsek via Alamy Stock PhotoThreat actors are widely adopting an emerging adversary-in-the-middle (AitM) phishing kit sold on Telegram to blitz Microsoft 365 and Gmail email accounts with threat campaigns that can bypass multifactor authentication (MFA) protections.The “Tycoon 2FA” phishing-as-a-service (PhaaS) platform has been active since at least last August but was updated as recently