After the EvilTokens PhaaS made some headlines last week for being able to phish M365 device codes, Push Security says there's actually 10 of these phishing kits used in the wild... a new rising trend, with device code phishing going up by 37.5 times this year

https://pushsecurity.com/blog/device-code-phishing#id-what-were-seeing-in-the-wild_id-sharefile