By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Kali365 hack tool wreaks havoc on Microsoft accounts
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Mobile > Kali365 hack tool wreaks havoc on Microsoft accounts
Mobile

Kali365 hack tool wreaks havoc on Microsoft accounts

News Room
Last updated: 2026/06/07 at 4:52 AM
News Room Published 7 June 2026
Share
Kali365 hack tool wreaks havoc on Microsoft accounts
SHARE

A new hacking kit, called Kali365, attacks Microsoft 365 users. This criminal tool is capable of taking control of an Outlook, Teams or OneDrive account without stealing a single password, and making double authentication completely useless.

Since April 2026, a hacking platform, called kali365, has become increasingly popular in the world of cybercrime. Promoted on Telegram channels, the platform is sold through a subscription, starting at $250 per month or $2,000 per year. The tool is part of the trend of PhaaS (Phishing-as-a-Service) these turnkey phishing kits that make life easier for cybercriminals.

Also read: Microsoft unmasks a cyberattack hiding in Google results and AI responses

Hundreds of attacks in a few weeks

By subscribing to a subscription, any cybercriminal, even without the slightest technical skills, can launch phishing attacks formidable tools designed to take control of Microsoft 365 accounts. The Kali365 toolbox includes phishing emails generated by artificial intelligence, automated campaign models, real-time dashboards and above all, a connection token capture system.

According to the warning issued by the FBI, hundreds of attacks have already been documented since April 2026. Among the targets are many organizations in North America and Europe that use Microsoft 365 as part of their activities. As MalwareBytes researchers point out, who relay the FBI’s warning, the kit is mainly designed to hack businesses, but it also represents a serious threat to “individual Microsoft 365 users”.

Also read: Why Microsoft is burying double authentication by SMS

An official mechanism exploited by hackers

The offensive begins with a fraudulent email. The email is disguised as a notification from a cloud service, such as a Teams document share, a OneDrive alert, or a meeting invitation. The email contains a one-time use code. The message asks the user to go to “microsoft.com/devicelogin” to enter the code. This is indeed an official Microsoft domain, without the slightest spelling error in the URL. This is where Kali365 shows himself to be particularly formidable and vicious. Indeed, the kit does not use dummy copies of the official Microsoft website. Rather, the hacking platform exploits an official and legitimate mechanism of the group.

When the user enters the code on the real Microsoft page, they do not log in to their own account. In fact, he goes without realizing it authorize the hacker’s device to log in to your Microsoft account. The trick relies on the device code authentication flow. It’s a system used by Microsoft to connect devices that don’t have a keyboard, like a smart TV or connected printer, to an online account. The device in question displays a code, the user enters it on their phone or PC, and the connection is established.

In this case, the hackers collect this code and send it by email to the user, slipped into a false notification. For its part, Microsoft sees nothing abnormal in the connection. In the eyes of the company’s servers, the approach is perfectly legitimate and simply shows that a user has connected a device to their Microsoft 365 account. Using the tools integrated into Kali365, the attacker will then seize an OAuth token, that is to say a session access token, which will open the doors to Outlook, Teams and OneDrive. All cloud applications connected to the account potentially end up in the hands of cybercriminals. The attacker can take advantage of this to “send phishing emails to colleagues, clients, friends or relatives from the victim’s account”which increases the scope of the attack, warns MalwareBytes.

Unnecessary double authentication

In the case of this type of cyberattack, the presence of a multi-factor authentication system is absolutely useless. This protection is in fact designed to prevent an attacker from connecting to your account for you. However, in the eyes of Microsoft, it is you yourself who granted the device access to your Microsoft 365 account. On paper, there is therefore no reason for Microsoft to require an additional connection code. Additional codes or authenticator apps “are no longer useful once the token has been compromised”explique MalwareBytes.

How to protect yourself against Kali365?

In their warning last month, FBI agents recommended that Microsoft 365 users take strong steps to protect themselves against Kali365. The FBI advises block device code authentication flow in Microsoft administration, by going to the conditional access policies in the Entra ID section. This option allows you to deactivate or restrict the mechanism used by Kali365 to orchestrate cyberattacks.

For their part, MalwareBytes researchers never enter a “code on a Microsoft login page just because an email or message prompts you to do so”. If an email or message asks you to enter one without you having done anything first, it is most likely a hacking attempt. Before validating anything, you must always read each instruction carefully. Furthermore, it is recommended to regularly monitor devices connected to your account on « account.microsoft.com/devices ». If a device or session seems unknown to you, you should delete it immediately, and change the account password urgently.

👉🏻 Follow tech news in real time: add 01net to your sources on Google, and subscribe to our WhatsApp channel.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Action-adventure “Shadow Frontier”: Is it really “Star Trek”? Action-adventure “Shadow Frontier”: Is it really “Star Trek”?
Next Article the risky bet of Generation Z the risky bet of Generation Z
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

the risky bet of Generation Z
the risky bet of Generation Z
Computing
Action-adventure “Shadow Frontier”: Is it really “Star Trek”?
Action-adventure “Shadow Frontier”: Is it really “Star Trek”?
Software
Plan town hall meetings correctly
Plan town hall meetings correctly
News
Spain is 2º C warmer than in the 80s
Spain is 2º C warmer than in the 80s
Gaming

You Might also Like

the sound of your TV will take a hit (and for less money)
Mobile

the sound of your TV will take a hit (and for less money)

5 Min Read
We’ve seen it cheaper, but in the current context, this Intel Core i9 mini PC is still worth it
Mobile

We’ve seen it cheaper, but in the current context, this Intel Core i9 mini PC is still worth it

5 Min Read
To start with a Garmin, the Forerunner 165 is ideal, especially at -43%
Mobile

To start with a Garmin, the Forerunner 165 is ideal, especially at -43%

5 Min Read
By mistake or pure madness, the price of the premium Xiaomi Pad 8 Pro tablet hits rock bottom (-40%)
Mobile

By mistake or pure madness, the price of the premium Xiaomi Pad 8 Pro tablet hits rock bottom (-40%)

5 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?