This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
boredchilada
cyfar.ca
did:plc:5dyykuwjfcda6vtyatuihg4f
@huntress.com
Attackers exploited unblocked device code and ROPC OAuth flows via Railway.com and LSHIY infrastructure, compromising M365 tenants despite MFA policies.
-
IOCs: EvilTokens
-
#M365 #Phishing #ThreatIntel
https://www.huntress.com/blog/conditional-access-misconfigurations
2026-07-10T04:09:21.472Z