Discussion

Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365

Started by The Hacker News · 13 Jul 2026 11:28 · 24 Views · 0 Replies
Thread Starter #0
An attacker running a live Microsoft 365 phishing operation left a Python web server listening on a public port with directory listing switched on. The command that did it: python3 -m http.server 8080, was still sitting in the readable .bash_history.

From that one lapse, French security firm Lexfo lifted the operator's entire toolkit and pivoted through it to two more

Okumaya devam et...

You must be logged in to reply.

0 quotes selected