home.social

#tycoon2fa — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #tycoon2fa, aggregated by home.social.

fetched live
  1. Notion Abused to Harvest Authentication Tokens in Targeted Attacks

    Researchers uncovered a sneaky phishing campaign where attackers abused Notion to steal authentication tokens, using free accounts to impersonate senior executives and send legit-looking document-sharing notifications. This clever tactic was linked to two phishing-as-a-service platforms and over 600 malicious scripts.

    osintsights.com/notion-abused-

    #Phishingasaservice #Eviltokens #Tycoon2fa #CollaborationPlatformAbuse #Notion

  2. 🎣 Authorities have seized over 300 domains and dismantled the #Tycoon2FA phishing kit used by attackers to bypass MFA in targeted attacks against businesses.

    Read: hackread.com/tycoon-2fa-phishi

    #CyberSecurity #CyberCrime #Phishing #Scam

  3. 🥂 🍾 Tycoon down!

    "Global phishing-as-a-service platform taken down in coordinated public-private action"

    A major phishing-as-a-service platform used to bypass multi-factor authentication (MFA) and enable large-scale account compromise has been disrupted following a coordinated international operation supported by Europol.

    The service, known as Tycoon 2FA, provided cybercriminals with a subscription-based toolkit designed to intercept live authentication sessions and gain unauthorised access to online accounts, including those protected by additional security layers."
    👇
    europol.europa.eu/media-press/

    "Europol, Microsoft, TrendAI™ and Collaborators Halt Tycoon 2FA Operations"
    👇
    trendmicro.com/en_us/research/

    #CyberVeille #Tycoon2FA #Europol

  4. 🎣 Leveraging our telemetry and proactive hunting, we ranked the most widespread AitM phishing kits - #Tycoon2FA, #Storm1167, #NakedPages, #Sneaky2FA, and more.

    Additionally, the article includes summary sheets covering 11 AitM phishing kits.

  5. Phishing-as-a-service is an area that is increasing rapidly according to research by security vendor Barracuda Networks, which says it has detected a “massive spike” in PhaaS attacks in the first two months of this year.

    computing.co.uk/news/2025/secu

    #phishing #phaas #tycoon2fa #evilproxy #infosec #cybersecurity #barracuda #technews

  6. Ah! Found the tool used to do this Javascript obfuscation method.

    benjaminaster.com/invisible-ja

    Ran into this while digging at a new obfuscation method in use by #Tycoon2FA . The new method uses the following tool by the same author (@martinkleppe) as JSFuck.

    aem1k.com/invisible/encoder/