Global coalition dismantles Tycoon 2FA phishing kit
2026-03-05T13:39:57Z•69f38cea00f10b33ce927196d59cdc487aea414ee34cdf9b77f2d7b81c8b34fc
2faagentic-ai-browserai-deanonymizationandroid-patchcisacloudflarecometcorunacybercrimedata-exfiltrationdomain-seizureexploit-kitforum-seizuregoogle-patchidentity-based-attacksios-exploitlaw-enforcementleakbasellmmicrosoftphishingprivacyqualcomm-zero-daytycoonvulnerability
What happened
CyberScoop feed covering multiple high-impact developments: Microsoft-led coalition dismantled the Tycoon 2FA phishing kit, seizing ~330 domains and naming an alleged creator in a civil complaint; international law enforcement (14 countries) seized LeakBase and arrested suspects after extracting its database; researchers disclosed agentic AI browser flaws (e.g., Comet) that can be triggered via simple calendar invites to access and exfiltrate local files; a study warns that LLMs are increasingly capable of deanonymizing people online; researchers traced the Coruna iOS exploit kit and linked U‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- cyberscoop
- Record identifier
- 69f38cea00f10b33ce927196d59cdc487aea414ee34cdf9b77f2d7b81c8b34fc
- Enrichment time
- 2026-03-05T13:39:57Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.