Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows
The Hacker News · Aug 25, 2026
Thousands of companies have been affected by the Mirage2FA campaign from 2024 to 2026. The commercial phishing-as-a-service toolkit targets Microsoft 365 accounts by abusing legitimate login flows and bypassing two-factor authentication. According to ANY.RUN research, 48% of targeted email addresses were potentially compromised. Most of the affected companies are US-based. Mirage2FA Campaign
Read original on The Hacker News
Want to stay informed about new business solutions?
Follow us
Ready to build a better digital experience?
We create modern multilingual websites, integrate external services and automate content workflows for growing businesses.