June 16, 2026 at 02:32 AM 2 min readtechbreaking
FBI Warns of Kali365 Phishing Campaign Targeting Microsoft 365 Users
FBI Security Advisory:
The Federal Bureau of Investigation has issued an urgent warning regarding a sophisticated phishing campaign dubbed Kali365. This threat specifically targets users of Microsoft 365 services, including Teams, Outlook, and OneDrive. The scheme employs a Browser-in-the-Browser tactic, utilizing deceptive login pop-ups to capture user credentials. Security experts identified that the service is being actively distributed via Telegram channels, enabling even low-skilled threat actors to launch high-impact phishing operations.
Mechanism of the Attack:
Detected first in April 2026, the Kali365 platform automates the creation of professional-looking, fake authentication interfaces. By tricking employees into inputting their corporate credentials into these fraudulent pop-ups, attackers bypass conventional security filters and gain unauthorized access to internal systems. The reliance on Telegram as a distribution medium highlights a growing trend of cybercriminals leveraging encrypted messaging platforms to lower the barrier to entry for credential theft and corporate espionage.
Security Precautions:
The FBI advisory underscores the necessity for organizations to implement multi-factor authentication and educate employees on identifying deceptive browser pop-ups. For Indian corporations increasingly relying on Microsoft 365 for daily operations, this campaign represents a significant vulnerability. Firms must monitor login logs for anomalous activity and restrict external access to internal communication tools. The persistence of such campaigns reflects the evolving ingenuity of cyber threats, requiring constant vigilance to protect sensitive corporate assets.
Pulse Intelligence
AI AnalysisContext & Background
- Browser-in-the-Browser phishing has emerged as a high-success tactic because it mirrors legitimate-looking pop-up windows that bypass traditional ad-blockers.
- Microsoft 365 is a critical infrastructure tool for global businesses, making it a lucrative and frequent target for large-scale phishing operations.
Key Consequences
- Organizations globally are expected to conduct immediate security audits of their Microsoft 365 access logs to identify any potential Kali365 compromises.
- IT departments will likely implement more stringent anti-phishing training focusing on browser window verification for employees.
- Potential increases in data breaches across corporate sectors as attackers scale the deployment of the Kali365 tool.
Market & Economic Impact
No direct market impact, though cybersecurity firms may see increased demand for threat intelligence services.

