보안 최초 · 갱신
마이크로소프트, 피싱 플랫폼 EvilTokens 차단
AI로 계정 탈취와 침해 메일 분석을 돕던 서비스였다.
왜 중요한가
차단으로 범죄자들이 계정 침해와 사기 수익화를 돕던 도구를 이용하기 어려워졌지만, 이미 침해된 계정은 추가 점검이 필요합니다.
TODAY SCORE
46.3/ 100
1위와 20.4점 차이
30초 요약
Microsoft는 EvilTokens가 1만2천여 Microsoft 계정을 1만여 조직에서 침해했다고 밝혔습니다. The Record는 영국에서 두 명이 체포됐다고 보도했습니다.
무슨 일이 있었나
EvilTokens는 기기 코드 피싱을 바탕으로 사회공학 메시지 작성과 표적 선정 등 공격 과정을 AI로 지원한 것으로 보도됐습니다. Microsoft 디지털범죄수사대(DCU)가 협력사들과 함께 서비스를 차단했고, The Hacker News는 미국 버지니아 동부지법의 허가를 받아 조치가 이뤄졌다고 전했습니다.
타임라인
Microsoft가 EvilTokens 차단을 발표했다.
EvilTokens PhaaS disrupted after compromising 12,000 Microsoft accountsThe Record가 영국에서 두 명이 체포됐다고 보도했다.
Two arrested in UK after Microsoft takedown of ‘Eviltokens’ AI-chatbot for cybercriminals
출처 5곳 · 기사 36건
- BleepingComputerAutomated AI agent used to breach cybersecurity nonprofit DIVD
- The Hacker News101 Malicious npm Packages Add Developers' WhatsApp Accounts to Groups Without Consent
- SecurityWeekHackers Use ChatGPT Custom GPTs in ClickFix Attacks
- SecurityWeekRig Security Emerges From Stealth With $12M to Tackle Agentic AI Identity Risks
- SecurityWeekFour Cyber Threats Harboring Big Plans for the Future
- Hacker NewsNew Cyber-OSINT model released
- SecurityWeekDaemon Tools Hackers’ NeedyMantis Malware Dissected by Microsoft
- Hacker NewsHackers Jailbreak AI Chatbots
- The Hacker NewsHackers Use NeedyMantis to Maintain Long-Term Access in Breached Networks
- The Hacker NewsRatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims
- BleepingComputerJadePuffer agentic AI attacks target Azure, destroy cloud resources
- Hacker NewsAnalyzing the ClickFix social engineering technique (2025)
- The Hacker News⚡ Weekly Recap: $387M Crypto Hack, Citrix Exploits, AI Agents Go Off-Script, and More Threats
- BleepingComputer80,000+ Organizations Had AI Logins Stolen: From Shadow AI to LLMjacking
- The Hacker NewsCarbonato Botnet Compromises Docker Hosts to Deploy Telegram-Controlled Hermes AI Agent
- Hacker NewsLarge Scale Threat Actor Attribution from Infostealer Logs
- The Hacker NewsJADEPUFFER-Linked Attackers Used Compromised Service Principals to Delete Azure Resources
- Hacker NewsAI Companies Say They're Investigating Rogue Bot Incidents
- Hacker NewsAgentic Hacker News
- Hacker NewsTop AI companies probing security incidents
- Hacker NewsHackers hijack AI accounts and servers to fuel new cyber crime boom
- The Hacker NewsLunex Stealer Abuses AMD Driver to Disable Security Monitoring and Steal Browser Credentials
- SecurityWeekNew x47.c Windows Botnet Weaponizes xAI Grok, AI API Draining
- SecurityWeekIn Other News: Clop Leak Site Takeover, Docker Botnet Hunts AI Keys, Water Utility Exposure
- Hacker NewsOpenAI and Microsoft Admits LLMs Are Destroying the Web and Built on Theft
- BleepingComputerNew Carbonato malware uses AI agents to hijack exposed Docker hosts
- The Hacker NewsThreatsDay: AI Search Poisoning, AI Coding Tool Leaking Repos, One-Click Code Execution and 13 More Stories
- SecurityWeekAI-Powered Campaign Targets Hundreds of Online Retailers
- The Hacker NewsTeamFiltration Campaign Compromises Seven Microsoft 365 Accounts Using Default Passwords
- Hacker NewsOAuth Token Theft Through Microsoft's Front Door
- BleepingComputerMalicious AI agents steal 600K credit cards, infect 100+ sites with skimmers
- SecurityWeekAI-Powered Phishing Platform EvilTokens Disrupted by Microsoft
- Ars TechnicaMicrosoft disrupts AI-assisted platform that compromised 12,000 accounts
- The Hacker NewsMicrosoft Takes Down EvilTokens Device-Code Phishing Service Tied to 12,000 Inbox Compromises
- The RecordTwo arrested in UK after Microsoft takedown of ‘Eviltokens’ AI-chatbot for cybercriminals
- BleepingComputerEvilTokens PhaaS disrupted after compromising 12,000 Microsoft accounts