<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>cybercrime.club</title><link>https://cybercrime.club/tags/phishing/</link><description>Infrastructure security news for people who build infrastructure.</description><generator>Hugo -- gohugo.io</generator><language>en-us</language><lastBuildDate>Sun, 05 Apr 2026 22:09:11 -0400</lastBuildDate><atom:link href="https://cybercrime.club/tags/phishing/" rel="self" type="application/rss+xml"/><item><title>Device Code Phishing Attacks Surge 37x as EvilTokens PhaaS Fuels OAuth Abuse Against Microsoft 365</title><link>https://cybercrime.club/posts/device-code-phishing-37x-surge-eviltokens-oauth-m365/</link><pubDate>Sun, 05 Apr 2026 22:09:11 -0400</pubDate><guid>https://cybercrime.club/posts/device-code-phishing-37x-surge-eviltokens-oauth-m365/</guid><description>Device code phishing attacks exploiting the OAuth 2.0 Device Authorization Grant have surged 37x in 2026, driven by turnkey PhaaS kits like EvilTokens that bypass MFA and compromise enterprise M365 tenants.</description><category>Threats</category></item></channel></rss>