Global coalition dismantles Tycoon 2FA phishing kit

2026-03-05T13:39:57Z69f38cea00f10b33ce927196d59cdc487aea414ee34cdf9b77f2d7b81c8b34fc
2faagentic-ai-browserai-deanonymizationandroid-patchcisacloudflarecometcorunacybercrimedata-exfiltrationdomain-seizureexploit-kitforum-seizuregoogle-patchidentity-based-attacksios-exploitlaw-enforcementleakbasellmmicrosoftphishingprivacyqualcomm-zero-daytycoonvulnerability

What happened

CyberScoop feed covering multiple high-impact developments: Microsoft-led coalition dismantled the Tycoon 2FA phishing kit, seizing ~330 domains and naming an alleged creator in a civil complaint; international law enforcement (14 countries) seized LeakBase and arrested suspects after extracting its database; researchers disclosed agentic AI browser flaws (e.g., Comet) that can be triggered via simple calendar invites to access and exfiltrate local files; a study warns that LLMs are increasingly capable of deanonymizing people online; researchers traced the Coruna iOS exploit kit and linked U‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
cyberscoop
Record identifier
69f38cea00f10b33ce927196d59cdc487aea414ee34cdf9b77f2d7b81c8b34fc
Enrichment time
2026-03-05T13:39:57Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Global coalition dismantles Tycoon 2FA phishing kit · Baitaphish