We partnered with Microsoft to disrupt EvilTokens, an AI-powered cybercrime platform.
Our team joined a global effort to dismantle its operations - investigating infrastructure, taking down domains, and helping police arrest its operators.
Say goodbye to another major cybercrime operation.
69
70
534
233,460
Something that keeps coming up with EvilTokens is people finishing MFA on the real Microsoft device-login page, then wondering why the attacker still got in. In practice the session token is what leaked, and a password reset alone usually doesn't revoke it.
Sep 24, 2026 · 5:48 PM UTC
2
19


