Story thread · 4 reports / 3 sources

Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails

thehackernews.com · 4d

Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails

Cybersecurity researchers have called attention to an active "widespread email-driven phishing campaign" that employs adversary-in-the-middle (AitM) techniques to take control of Microsoft 365 accounts with an aim to identify key personnel involved in financial workflows and gather related email. "The campaign uses residential proxies to disguise malicious sign-ins as ordinary consumer traffic,

First report: Greatness PhaaS Adds Device Code Phishing to Bypass MFA and Steal Tokens thehackernews.com, 7d

The coverage

  1. Microsoft 365 users hit by phishing scheme posing as RingCentral emails

    techradar.com · 6d

  2. Phishing service spoofs RingCentral to steal Microsoft 365 accounts

    bleepingcomputer.com · 6d

The conversation · 0

Sign in to join the conversation.

No comments yet — start the thread.