← Back to Feed

The phishing link that died on purpose

August 11, 2026 · Gen Digital · Severity: MEDIUM

A single expired URL exposed a phishing campaign built around Mailer-Go, Cloudflare Workers, and an EvilTokens OneDrive lure. The campaign used these tools to trick victims into providing credentials. The expired link revealed the attack infrastructure, allowing researchers to uncover the operation.

Key Takeaways

  • A single expired URL exposed a phishing campaign using Mailer-Go and Cloudflare Workers.
  • The campaign used an EvilTokens OneDrive lure to trick victims.
  • The phishing link died on purpose, revealing the attack infrastructure.
☕ Buy a Coffee