Story thread · 4 reports / 3 sources
Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails
thehackernews.com · 4d

Cybersecurity researchers have called attention to an active "widespread email-driven phishing campaign" that employs adversary-in-the-middle (AitM) techniques to take control of Microsoft 365 accounts with an aim to identify key personnel involved in financial workflows and gather related email. "The campaign uses residential proxies to disguise malicious sign-ins as ordinary consumer traffic,
First report: Greatness PhaaS Adds Device Code Phishing to Bypass MFA and Steal Tokens — thehackernews.com, 7d
The coverage
- Microsoft 365 users hit by phishing scheme posing as RingCentral emails
techradar.com · 6d
- Phishing service spoofs RingCentral to steal Microsoft 365 accounts
bleepingcomputer.com · 6d
The conversation · 0
Sign in to join the conversation.
No comments yet — start the thread.