Microsoft dismantles AI-powered phishing platform EvilTokens, arrests two suspects
Summary
Microsoft has taken decisive action against an AI-powered phishing service called EvilTokens, which has reportedly compromised over 12,000 email inboxes across various organizations worldwide. The U.S. District Court for the Eastern District of Virginia authorized Microsoft’s Digital Crimes Unit to dismantle EvilTokens' infrastructure, leading to the seizure of 50 websites and the disabling of more than 150 domains associated with the service. EvilTokens employed AI tools to streamline phishing operations, allowing hackers to efficiently analyze victims' emails and navigate corporate networks for financial fraud, a tactic that highlights how AI models are evolving to enable faster and more sophisticated cybercrime while lowering entry barriers for less-skilled hackers.