CYBERRAKSHAK LABS Β· RESEARCH #042

πŸ”΄ When AI Becomes the Fraud Analyst

What happens when a stolen mailbox stops being just a collection of emailsβ€”and becomes an intelligence source for financial fraud?

By Vivek Kumar Β· Published 25 September 2026
RESEARCH#042
CATEGORYAI Security / Business Email Compromise
CRL ASSESSMENTHIGH
RESEARCH LEVELDeep Research
PUBLISHED2026-09-25
Source & social links: LinkedIn Post β†—WhatsApp β†—YouTube β†—
How CyberRakshakLabs researches threats β†’
AI did not have to break into the mailbox. The supplied research describes a model in which access was obtained through device-code phishing and token theft, after which AI was used to analyze compromised mailboxes, map relationships and accelerate fraud preparation.
12,000+Compromised inboxes linked to the platform in Microsoft reporting cited by the supplied article.
10,000+Organizations reportedly represented across the compromised inboxes.
AI-ASSISTED BECMailbox analysis, target identification and fraud preparation can be compressed into a service workflow.
What Was EvilTokens?

According to the supplied CyberRakshakLabs research, Microsoft described EvilTokens as an AI-enabled cybercrime platform combining account compromise, mailbox analysis, target selection and fraud preparation into a single service.

The article says Microsoft associated the activity with Storm-2992 and reported a Telegram-based subscription model with an initial $1,500 fee and $500 per month, with additional services reportedly available separately.

Subscribe β†’ Configure β†’ Attack

The important observation is the service model: expertise, infrastructure and workflow can be packaged so an attacker does not need to build every capability themselves.

The Attack Did Not Start With AI

The supplied research explicitly distinguishes the initial intrusion from the later AI-assisted activity. Microsoft reportedly said EvilTokens used device-code phishing to compromise Microsoft accounts and steal authentication tokens.

Victim
↓
Device-Code Phishing
↓
Authentication
↓
Token Compromise
↓
Microsoft Account Access
↓
Mailbox Access
↓
AI Analysis
↓
Target Identification
↓
Impersonation
↓
Financial Fraud

The supplied article stresses that the victim may never give the attacker a password; the authentication flow itself can be abused.

How AI Changes Mailbox Analysis

Once a mailbox is compromised, the attacker may face a large information problem. An executive inbox can contain invoices, bank details, payment approvals, vendors, contracts, executives and finance-team conversations.

The supplied research says EvilTokens could reportedly summarize and translate emails, identify financial conversations, map organizational roles and trusted relationships, identify payment authorizations, find vendor invoices, identify people involved in moving money, recommend impersonation targets and help draft fraudulent messages.

The attacker does not necessarily need to read the whole inbox. The objective is actionable intelligence.
From Mailbox to Organizational Intelligence

A compromised mailbox can contain the relationships that make business email compromise convincing: who reports to whom, who approves payments, which vendor is expecting money, when a payment is due and which employee should receive a request.

Mailbox
↓
Organizational Intelligence
↓
Financial Intelligence
↓
Relationship Mapping
↓
Impersonation
↓
Payment Fraud
AI Compresses the BEC Workflow

Traditional BEC can require compromise, manual reading, understanding the organization, finding a payment opportunity, impersonating an executive or vendor and redirecting money.

The supplied research describes the AI-assisted model as compromise β†’ AI reads mailbox β†’ AI maps organization β†’ AI finds financial conversations β†’ AI identifies target β†’ AI helps prepare impersonation β†’ fraud.

The critical change identified by the article is time: AI can potentially reduce the time between compromise and actionable intelligence.

Why β€œAI Hacked 12,000 Organizations” Would Be Inaccurate
Important source discipline: The supplied article explicitly says it would be inaccurate to describe the incident as β€œAI hacked 12,000 organizations.” Its more precise framing is that Microsoft linked an AI-enabled cybercrime platform to approximately 12,000 compromised inboxes across more than 10,000 organizations, with the initial compromise involving phishing and token theft.

That distinction matters because AI did not replace the initial intrusion. In the supplied analysis, AI compressed the post-compromise analysis and fraud-preparation workflow.

The New Cybercrime Equation

Traditional cybercrime required skill, time, infrastructure and knowledge. The supplied research frames AI-assisted cybercrime increasingly as:

Access + Service + AI + Infrastructure

The article places EvilTokens in the broader trend of Ransomware-as-a-Service, Phishing-as-a-Service, Malware-as-a-Service and Access-as-a-Service, describing an additional layer of AI-assisted Fraud-as-a-Service.

Why the Inbox Is a High-Value Security Asset

An executive mailbox can contain invoices, contracts, bank details, vendor relationships, payment approvals, employee and customer information, travel information, internal discussions, sensitive links and organizational structure.

The supplied research therefore frames the inbox as a business-intelligence database. Once compromised, the attacker potentially gains contextβ€”and context is what makes impersonation convincing.

What Organizations Should Do
1. Protect against device-code phishing
Review whether device-code authentication is necessary and apply appropriate Conditional Access controls.
2. Use phishing-resistant authentication
Where practical, use passkeys, FIDO2 and phishing-resistant MFA.
3. Monitor token abuse
Look for unusual token issuance, unfamiliar devices, unusual sign-in locations, suspicious sessions, unexpected OAuth activity and abnormal mailbox access.
4. Monitor mailbox behaviour
Investigate mass searches, unusual message access, large-volume downloads, suspicious forwarding rules, new access locations, finance-related mail access and abnormal API activity.
5. Protect payment workflows
Independently verify requests to change payment information, redirect funds or approve unusual transactions through a trusted second channel.
The Human Firewall Still Matters

The supplied research highlights independent verification as a business-process security control. Even if an attacker has the executive mailbox, vendor invoice, payment amount, employee name and perfect timing, Finance can interrupt the chain by independently verifying bank-account changes.

Business processes are security controls.
The Infrastructure Can Be Disrupted; the Model Can Reappear

The supplied article says Microsoft reported a disruption involving a coalition including Health-ISAC, Cloudflare, Coinbase, OpenAI, Railway, SpyCloud, The Shadowserver Foundation and TRM Labs. It also reports the seizure of 50 websites and disabling of more than 150 additional domains, and says Microsoft reported two UK arrests on September 11, 2026.

Those claims are presented here as reported in the supplied CyberRakshakLabs article. The broader analytical point in that article is that disabling one platform does not remove the reusable model: compromise β†’ AI analysis β†’ target selection β†’ impersonation β†’ fraud.

Source discipline: This Research page is based on the supplied CyberRakshakLabs post. External claims in that post are attributed to Microsoft and other named parties. CyberRakshakLabs does not independently verify those external reports on this page.
The attacker does not just want your email. They want to understand how your organization moves money.

πŸ”₯ Final Takeaway

Yesterday: Compromise β†’ Manual Investigation β†’ Fraud

Today: Compromise β†’ AI Analysis β†’ Fraud

Potential direction described in the supplied research: Compromise β†’ AI Analysis β†’ Automated Targeting β†’ Automated Social Engineering β†’ Fraud

CyberRakshakLabs Security Formula: Strong Identity + Token Protection + Mailbox Monitoring + AI-Aware Detection + Independent Payment Verification.

Your email account is not just a communication tool. It may also be an intelligence source for an attacker.