Close Menu
Alpha Leaders
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
What's On
TomoCredit Revamps Marketing Claims, Emphasizes Coaching Instead Of Boosting Credit

TomoCredit Revamps Marketing Claims, Emphasizes Coaching Instead Of Boosting Credit

31 March 2026
She was a customer before she was the CFO. Now she’s steering Workiva to  billion in revenue

She was a customer before she was the CFO. Now she’s steering Workiva to $1 billion in revenue

31 March 2026
How Government Attempts To Reduce Health Spending Can Paradoxically Raise Health Costs

How Government Attempts To Reduce Health Spending Can Paradoxically Raise Health Costs

31 March 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Alpha Leaders
newsletter
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
Alpha Leaders
Home » New Microsoft 2FA Bypass Attack Warning—Dangerous And Sneaky, Act Now
Innovation

New Microsoft 2FA Bypass Attack Warning—Dangerous And Sneaky, Act Now

Press RoomBy Press Room19 January 20254 Mins Read
Facebook Twitter Copy Link Pinterest LinkedIn Tumblr Email WhatsApp
New Microsoft 2FA Bypass Attack Warning—Dangerous And Sneaky, Act Now

Update, Jan. 19, 2025: This story, originally published Jan. 18, now includes additional mitigation advice from cybersecurity experts regarding the latest Microsoft Sneaky 2FA bypass attack.

There is no escaping the phishing threat, as WhatsApp and PayPal users have been warned. Gmail and Outlook users don’t escape the attack warnings, and the addition of two-factor authentication bypass hacks just muddies the security waters. Now, French security researchers have exposed another new adversary-in-the-middle attack that targets Microsoft 365 accounts, stealing credentials and bypassing 2FA protections in the process. Here’s what you need to know.

The Sneaky 2FA Attack Warning

A cybercrime group known as Sneaky Log has been selling a 2FA-bypassing phishing-as-a-service kit called Sneaky 2FA since late last year. Researchers from the French cybersecurity company Sekoia have now published a new report warning how the kit, operating by way of a bot service via Telegram, targets Microsoft 365 account holders.

“Customers reportedly receive access to a licensed obfuscated version of the source code and deploy it independently,” Sekoia researchers Quentin Bourgue and Grégoire Clermont said, “Currently, Sneaky 2FA’s phishing pages are hosted on compromised infrastructure, frequently involving WordPress websites and other domains controlled by the attacker.” Costing $200 per month, the Sneaky Log sales team offers reductions that bring the cost down depending upon the length of the subscription.

Like so many of these kits, take a look at Rockstar 2FA, example, Sneaky 2FA harvests Microsoft 365 session cookies in order to bypass the 2FA process during subsequent attacks so that authentication appears, indeed is, legitimate as far as the session is concerned.

Elad Luz, head of research at Oasis Security, said that the threat actors had “blurred out screenshots of Microsoft webpages to create a convincing login background,” which made it “appear as though users will access legitimate content after successfully logging in.”

Meanwhile, Stephen Kowski, field chief technology officer at SlashNext Email Security+, said “this kit’s sneaky aspects include its sophisticated ability to populate victim email addresses automatically, its evasion of detection through Cloudflare Turnstile challenges, and its clever redirection of security tools to Wikipedia pages” adding that it is “particularly dangerous for Microsoft 365 environments.”

I have reached out to Microsoft for a statement.

Mitigating 2FA Bypass Attacks

Intercepting both credentials and 2FA codes in real time means that attackers are able to bypass what Patrick Tiquet, vice President of security and architecture at Keeper Security, calls “one of the most relied-upon layers of account protection.” The sneakiness, Tiquet warned, and its sophistication lies in its anti-analysis features such as traffic filtering and checks to avoid detection. As well as “convincing pre-populated login forms, which enhance its success rate,” not to mention that hosting the phishing pages on compromised infrastructure adds another layer of deception, according to Tiquet. Luckily, there are mitigations that organizations can consider, and the first, Tiquet said, is “implementing Privileged Access Management to restrict access and contain potential damage from compromised accounts.” By pairing this with robust password management, Tiquet continued, you can ensure that credentials are strong, unique and securely stored, reducing exposure to phishing campaigns. “Additionally, a password manager will prevent users from entering credentials into spoofed websites because the tool will only auto-fill credentials on the authentic webpage,” Tiquet concluded.

Although this 2FA bypass attack targets Microsoft 365 users, this kind of threat is not just aimed at Microsoft and can impact users of any accounts that are perceived to be of high value to the threat actors involved. The common factor, as alluded to already, in most such attacks is the phishing aspect, so that’s where the mitigation methodology must sit: this fascinating article explores methods of mitigating phishing attacks.

2FA Bypass 2FA hack Hack two-factor authentication Hacking 2FA Microsoft Microsoft 2FA hack Microsoft 365 Sekoia Sneaky 2FA two-factor authentication bypass
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link

Related Articles

TomoCredit Revamps Marketing Claims, Emphasizes Coaching Instead Of Boosting Credit

TomoCredit Revamps Marketing Claims, Emphasizes Coaching Instead Of Boosting Credit

31 March 2026
How Government Attempts To Reduce Health Spending Can Paradoxically Raise Health Costs

How Government Attempts To Reduce Health Spending Can Paradoxically Raise Health Costs

31 March 2026
AI Sandboxes Are Crucial Regulatory Safety Nets For Advancing AI And Saving Humanity From Calamity

AI Sandboxes Are Crucial Regulatory Safety Nets For Advancing AI And Saving Humanity From Calamity

31 March 2026
Latest Updates After Raw At MSG

Latest Updates After Raw At MSG

31 March 2026
20 States May See Aurora Tuesday Night

20 States May See Aurora Tuesday Night

31 March 2026
What The Meta And YouTube Ruling Means For You

What The Meta And YouTube Ruling Means For You

31 March 2026
Don't Miss
Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

By Press Room27 December 2024

Every year, millions of people unwrap Christmas gifts that they do not love, need, or…

Walmart dominated, while Target spiraled: the winners and losers of retail in 2024

Walmart dominated, while Target spiraled: the winners and losers of retail in 2024

30 December 2024
Moltbook is the talk of Silicon Valley. But the furor is eerily reminiscent of a 2017 Facebook research experiment

Moltbook is the talk of Silicon Valley. But the furor is eerily reminiscent of a 2017 Facebook research experiment

6 February 2026
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Latest Articles
AI Sandboxes Are Crucial Regulatory Safety Nets For Advancing AI And Saving Humanity From Calamity

AI Sandboxes Are Crucial Regulatory Safety Nets For Advancing AI And Saving Humanity From Calamity

31 March 20261 Views
Ousted Air Canada CEO failed to speak French—and forgot the basics of crisis leadership

Ousted Air Canada CEO failed to speak French—and forgot the basics of crisis leadership

31 March 20261 Views
Latest Updates After Raw At MSG

Latest Updates After Raw At MSG

31 March 20261 Views
Is the org chart dead in the age of AI? LinkedIn’s chief economic opportunity officer thinks so

Is the org chart dead in the age of AI? LinkedIn’s chief economic opportunity officer thinks so

31 March 20260 Views
About Us
About Us

Alpha Leaders is your one-stop website for the latest Entrepreneurs and Leaders news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks
TomoCredit Revamps Marketing Claims, Emphasizes Coaching Instead Of Boosting Credit

TomoCredit Revamps Marketing Claims, Emphasizes Coaching Instead Of Boosting Credit

31 March 2026
She was a customer before she was the CFO. Now she’s steering Workiva to  billion in revenue

She was a customer before she was the CFO. Now she’s steering Workiva to $1 billion in revenue

31 March 2026
How Government Attempts To Reduce Health Spending Can Paradoxically Raise Health Costs

How Government Attempts To Reduce Health Spending Can Paradoxically Raise Health Costs

31 March 2026
Most Popular
Jamie Dimon says American Dream is ‘slipping out of reach’—JPMorgan will spend billions to fix it

Jamie Dimon says American Dream is ‘slipping out of reach’—JPMorgan will spend billions to fix it

31 March 20262 Views
AI Sandboxes Are Crucial Regulatory Safety Nets For Advancing AI And Saving Humanity From Calamity

AI Sandboxes Are Crucial Regulatory Safety Nets For Advancing AI And Saving Humanity From Calamity

31 March 20261 Views
Ousted Air Canada CEO failed to speak French—and forgot the basics of crisis leadership

Ousted Air Canada CEO failed to speak French—and forgot the basics of crisis leadership

31 March 20261 Views
© 2026 Alpha Leaders. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.