Why this matters
The adversary-in-the-middle (AitM) phishing service lowers the barrier to entry for actors to create attacks and steal more than just user credentials.
Teams should validate whether the development affects their technology, services, obligations or risk decisions.
Who should act
- Security operations and incident response teams
- Technology and service owners
- Risk, compliance and security leaders
SecurityTalent action checklist
- Open the official source and confirm scope, affected systems and timing.
- Assign an accountable owner and assess exposure using current inventory.
- Apply the official guidance or document the risk decision and verification evidence.
Source and attribution
Primary source: 'NovaCookies' Kit Steals Microsoft 365 Sessions for $320 a Month
- Publisher
- Dark Reading
- Author / authority
- Dark Reading
- Published
- August 26, 2026
- SecurityTalent review
- July 18, 2026
This is an original SecurityTalent summary and analysis based on the linked primary source. It is not a republication. The source controls if facts, versions or deadlines change after our review.