Microsoft disrupts AI-assisted platform that compromised 12,000 accounts
CybersecurityComputer ScienceCriminal Justice
THE AI ANGLE
Analyzing stolen inboxes to map relationships and draft targeted fraud emailsMicrosoft and law enforcement disrupted EvilTokens, a cybercrime platform that used OAuth device code abuse and an AI chatbot to compromise 12,000 accounts. The service automated target selection and email drafting, letting attackers map corporate relationships in minutes instead of days. Security teams must now account for faster post-compromise reconnaissance and enforce out-of-band transaction verification.
THE TEACHING ANGLE
Legitimate authentication protocols like OAuth device flows can be weaponized with AI analysis to turn simple credential theft into targeted financial fraud within minutes.Read the original at arstechnica.com Generate teaching or study materials
More in Cybersecurity
- Andrew Kelley Interview: Why He Built Zig, Banned AI Contributions, and Moved Zig off GitHubInfoQ · September 23, 2026
- AI privacy budgets: Ask for the calculation, not the claimCIO.com · September 23, 2026
- The case for purpose-built generative AI in fraud preventionTechRadar · September 23, 2026
- Simple visual patterns can trick AI-powered vehicles and robotsPhys.org — Technology · September 23, 2026
- In the age of AI, teaching networking principles remains more important than learning protocolsThe Register · September 23, 2026