Skip to main content
See every side of every news story
Published loading...Updated

BigBear 2.0 Phishing Campaign Hijacks Microsoft 365 Sessions After MFA

Summary by CSO Online
A phishing-as-a-service operation targeting Microsoft 365 users has harvested thousands of session cookies that could be used to hijack authenticated sessions after victims complete multifactor authentication, CloudSEK said. The cybersecurity firm said in a report that it uncovered the operation, known as BigBear 2.0, in June after gaining access to its administrative panel. The panel contained 5,137 credential records linked to 461 targeted org…

13 Articles

A phishing operation as a service linked to BigBear accumulated thousands of Microsoft 365 credentials and session cookies, including seemingly complete MFA authentication. Access to the attackers' panel allowed us to observe how the campaign uses Evilginx2, residential proxies and Telegram bots to convert business accounts into criminal merchandise.

Read Full Article
Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center

Factuality Info Icon

To view factuality data please Upgrade to Premium

Ownership

Info Icon

To view ownership data please Upgrade to Vantage

BleepingComputer broke the news in Melville, United States on Monday, September 7, 2026.
Too Big Arrow Icon
Sources are mostly out of (0)

Similar News Topics

News
Feed Dots Icon
For You
Search Icon
Search
Blindspot LogoBlindspotLocal