But what exactly is AiTM? Or Evilproxy?
Adversary in the Middle (AiTM)
This is a type of attack in which a malicious actor 'inserts' itself between a user and an online service. During AiTM attacks, a user interacts with a fake website created by the attacker.
This allows the attacker to steal login credentials and cookies. These can then be used to bypass multi-factor authentication (MFA) and perform other attacks against you. For example, it could be a fake login to your work email and identity theft.
EvilProxy
This is a phishing threat that targets Microsoft 365 accounts. The attackers use sophisticated Adversary-in-the-Middle (AiTM) phishing techniques. They pretend to be well-known and trusted services, such as DocuSign, Adobe or Concur.