Thousands of companies have been affected by the Mirage2FA campaign from 2024 to 2026. The commercial phishing-as-a-service toolkit targets Microsoft 365 accounts by abusing legitimate login flows and bypassing two-factor authentication.According to ANY.RUN research, 48% of targeted email addresses were potentially compromised. Most of the affected companies are US-based.Mirage2FA Campaign
First seen on thehackernews.com
Jump to article: thehackernews.com/2026/08/mirage2fa-surge-hits-4500-us-and-eu.html
![]()

