Report Details New Phishing Scheme

How calendar invite files are now being used to unleash malware.

Phishing Tadamichi
istock.com/tadamichi
Fortra Intelligence and Research Experts (FIRE) have identified a new phishing campaign that is expanding beyond traditional email, using calendar invites (.ics files) to introduce malicious content into trusted workflows. FIRE links the activity to the EvilTokens phishing kit, combining ConsentFix (device code phishing) with calendar‑based delivery to capture Microsoft session tokens through legitimate authentication prompts.
 
The full report is available here.
 
More in Cybersecurity