How phishing service Tycoon 2FA went under
PUBLISHED Thursday, March 5, 2026 · erik van klinken
AI BRIEFING
- ⬤ Microsoft disrupts phishing-as-a-service provider Tycoon 2FA, seizing 330 active domains, after it sent tens of millions of fraudulent emails to 500,000+ organizations monthly.
- ⬤ Tycoon 2FA bypassed multi-factor authentication, allowing thousands of cybercriminals to steal sensitive information.
- ⬤ Microsoft collaborated with Europol and international partners to take down the illicit service.
ADVERTISEMENT