threat-intel Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365 A security firm, Lexfo, uncovered three separate phishing operations targeting Microsoft 365, all leveraging modified versions of the Evilginx proxy. These campaigns utilized a combination of traditional proxying and a novel technique exploiting Microsoft's device code flow, bypassing MFA. The attackers, led by Egyptia… The Hacker News · Jul 13, 2026 High EGFRNOphishingevilginxdevice-code