Tycoon 2FA Phishers Scatter, Adopt Device Code Phishing
Tycoon 2FA phishers have shifted to device code phishing, using legitimate login flows to trick victims into handing over account access. This tactic is concerning as it leverages a service's own security features against it. Engineers should be aware of this new phishing method and educate users on its risks. Users should be cautious when receiving device codes via SMS or email, and consider alternative authentication methods.