Tool
EvilTokens
- First Reported
- Sep 15, 2026
- Latest Reported
- Sep 29, 2026
Reported Context (2)
- For example, EvilTokens, a phishing service that emerged in April 2026, reflects the professionalization of the phishing-as-a-service (PhaaS) ecosystem. AI Scales Social Engineering, While Deepfakes Undermine Identity Checks
- via AES-256-GCM with the threat actor supplied password. This technique has also been observed in the EvilTokens phishing kit. In this case, however, the AES key is not generated server-side. Instead, it is derived GhostCode Phishing Kit Abuses Microsoft Device-Code Authentication to Steal Account Tokens
Threat Actors (2)
MITRE ATT&CK (11)
Vendors (5)
Products (10)
Tools (13)
Industries (4)
Countries (5)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.