AI Business LensTHE BUSINESS OF AI, FOR PEOPLE WHO TEACH IT OR LEARN FROM IT
Ars Technica · September 23, 2026 · On the brief until October 7, 2026

Microsoft disrupts AI-assisted platform that compromised 12,000 accounts

CybersecurityComputer ScienceCriminal Justice
THE AI ANGLE
Analyzing stolen inboxes to map relationships and draft targeted fraud emails

Microsoft and law enforcement disrupted EvilTokens, a cybercrime platform that used OAuth device code abuse and an AI chatbot to compromise 12,000 accounts. The service automated target selection and email drafting, letting attackers map corporate relationships in minutes instead of days. Security teams must now account for faster post-compromise reconnaissance and enforce out-of-band transaction verification.

Summary written by AI Business Lens with an AI model from the article at arstechnica.com. It is not the article, and the publisher has not reviewed it. For publishers.

THE TEACHING ANGLE
Legitimate authentication protocols like OAuth device flows can be weaponized with AI analysis to turn simple credential theft into targeted financial fraud within minutes.

Read the original at arstechnica.com   Generate teaching or study materials

Instructors get discussion guides, assignments, and mini-cases. Students and readers get a plain summary, points to raise, an exercise, and a self-check. All built from the full article. A free account saves stories and gives you three generations. Stories stay on the brief for 14 days. After that this page keeps the link to the original.

More in Cybersecurity