Meet Kali365: The ‘Amazon of Cybercrime’ Where Hackers Use AI to Completely Bypass Multi-Factor Authentication



  • Kali365 is a sophisticated phishing platform as a service, also known as Octopi365 and Freedom365, targeting Microsoft accounts.
  • It was first detected by security company Huntress in May 2026 when examining a large number of Microsoft 365 logins originating from China.
  • FBI issues warning detailing process as part of public service announcement

Phishing attacks are nothing new: an estimated 3.4 billion malicious emails are sent daily, representing a gigantic 1.2% of all email traffic.

Google alone blocks approximately 100 million phishing emails daily, as threat actors continue to evolve their approaches, using unique campaigns, AI-generated content and, lately, QR codes to lure unsuspecting victims.

Leave a Comment

Your email address will not be published. Required fields are marked *