New BitB Phishing Kit Targets Microsoft Accounts via Sneaky 2FA Attack
First seen 2 Dec 2025, 18:33 UTC
•

•83% similarity
•14
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
A new phishing kit utilizing the BitB technique has emerged, specifically targeting Microsoft account users to steal credentials through a Sneaky 2FA attack. Security researchers have identified this evolution in Phishing-as-a-Service (PhaaS), which poses a significant risk to users' accounts. The kit exploits vulnerabilities in two-factor authentication processes to deceive users into providing sensitive information.
ThreatCluster AI
How this analysis works