By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Whisper 2FA kit steals Microsoft 365 credentials and MFA tokens in real time – News
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > Whisper 2FA kit steals Microsoft 365 credentials and MFA tokens in real time – News
News

Whisper 2FA kit steals Microsoft 365 credentials and MFA tokens in real time – News

News Room
Last updated: 2025/10/15 at 7:58 AM
News Room Published 15 October 2025
Share
Whisper 2FA kit steals Microsoft 365 credentials and MFA tokens in real time –  News
SHARE

A new report released today by cloud cybersecurity firm Barracuda Networks Inc. details a rapidly evolving phishing-as-a-service kit dubbed Whisper 2FA that’s designed to steal Microsoft 365 credentials and multifactor authentication tokens in real time.

First detected in July 2025, Whisper 2FA represents the latest wave of industrialized phishing operations that combine advanced web technologies, layered obfuscation and anti-analysis features to bypass both human and technical defenses, according to Barracuda.

Phishing operations and kits are not new, but where Whisper 2FA becomes particularly interesting is that, unlike conventional phishing pages that collect credentials once, it maintains a continuous credential-theft loop through AJAX, an asynchronous web technology that allows instant updates without reloading the page. The mechanism allows the attackers to repeatedly exfiltrate login data and MFA codes until a valid session token is captured, keeping victims engaged under the illusion of a legitimate Microsoft 365 login flow.

Barracuda’s researchers identified multiple phishing lures associated with the kit, including spoofed messages from Docusign Inc., Adobe Inc., voicemail systems and invoice notifications, with each crafted to evoke urgency and trust. The platform rotates branding and pretexts dynamically to evade detection and maximize click-through rates.

Since first being detected, Whisper 2FA’s technical sophistication has also been observed to have increased dramatically. Early samples contained developer comments and moderate code obfuscation, while current versions employ dense multilayered Base64 and XOR encoding, aggressive debugging traps and anti-inspection techniques that crash browser tools or blank the page if tampering is detected.

The kit also integrates session-based checks that validate intercepted MFA tokens directly against attacker command-and-control servers in real time.

Whisper 2FA hides its operations behind familiar user interfaces. Each form field — email, password or one-time code — is invisibly bound to hidden scripts that transmit data instantly when users interact with the page. The attackers’ backend validates each stolen one-time password within seconds, prompting victims to re-enter new codes if an attempt fails, creating an endless real-time MFA relay until a working token is obtained.

Barracuda warns that Whisper 2FA underscores the industrial maturity of PhaaS ecosystems, where kits are continuously updated, sold or leased with professional support.

“As phishing kits like this continue to evolve, organizations need to move past static defenses and adopt layered strategies: user training, phishing-resistant MFA, continuous monitoring and threat intelligence sharing,” the report concludes. “Only then can defenders keep pace with the relentless innovation we’re now seeing in phishing campaigns like Whisper 2FA.”

Image: News/Ideogram

Support our mission to keep content open and free by engaging with theCUBE community. Join theCUBE’s Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities.

  • 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more
  • 11.4k+ theCUBE alumni — Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network.

About News Media

News Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of News, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — News Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, News Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Motorola’s new ultra-thin phone challenges Samsung, Apple for the throne Motorola’s new ultra-thin phone challenges Samsung, Apple for the throne
Next Article Scalable infrastructure is crucial to Africa’s next tech leap Scalable infrastructure is crucial to Africa’s next tech leap
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

Roblox CEO interview gets heated over child safety |  News
Roblox CEO interview gets heated over child safety | News
News
'Landman' Season 2 Release Schedule: When to Watch More on Paramount Plus
'Landman' Season 2 Release Schedule: When to Watch More on Paramount Plus
News
Stream While You Can: Everything Leaving Netflix in December 2025
Stream While You Can: Everything Leaving Netflix in December 2025
News
Best TV deal: Get the 100-inch Hisense E6 Cinema Series TV for 50% off
Best TV deal: Get the 100-inch Hisense E6 Cinema Series TV for 50% off
News

You Might also Like

Roblox CEO interview gets heated over child safety |  News
News

Roblox CEO interview gets heated over child safety | News

1 Min Read
'Landman' Season 2 Release Schedule: When to Watch More on Paramount Plus
News

'Landman' Season 2 Release Schedule: When to Watch More on Paramount Plus

4 Min Read
Stream While You Can: Everything Leaving Netflix in December 2025
News

Stream While You Can: Everything Leaving Netflix in December 2025

6 Min Read
Best TV deal: Get the 100-inch Hisense E6 Cinema Series TV for 50% off
News

Best TV deal: Get the 100-inch Hisense E6 Cinema Series TV for 50% off

4 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?