Skip to main content

Tag: microsoft 365

77 articles

Empty office cubicle with laptop and smartphone on desk, surrounded by office supplies in a bright, daytime setting.

Phishing Service NovaCookies Targets Organizations with 365 Session Theft

Meet NovaCookies, a sneaky phishing service that's stealing Microsoft 365 sessions from hundreds of organizations - and it's available for a low monthly fee of just $320. This subscription-based threat packages real-time session theft, making it a potent and affordable tool for cybercriminals.

Analyst 207
Office workspace with computers and subtle network hints, laptop screen visible.

Phishing Kit NovaCookies Exploits Docusign Notifications to Hijack Microsoft 365 Sessions

Meet NovaCookies, a sneaky phishing kit that's being sold for just $320 a month, and can hijack your Microsoft 365 sessions in real-time by cleverly intercepting Docusign notifications. This live adversary-in-the-middle relay captures active sessions, allowing hackers to harvest your credentials and multi-factor authentication codes.

Analyst 207
Typical office desk with laptop and smartphone, blurred screens, in ordinary office setting with daylight.

Mirage2FA Campaign Targets 4,500 Firms, Bypasses Microsoft 365 2FA

Thousands of companies, including 4,532 unique organizations worldwide, have been targeted by the Mirage2FA campaign, a sneaky phishing-as-a-service toolkit that cleverly bypasses Microsoft 365's two-factor authentication. US-based companies are among the hardest hit, making up 63.7% of the victims.

Analyst 207
Modern office conference room with people, laptop, and screen display.

Microsoft Bolsters Teams Security With Automated Bot Blocking

Microsoft just supercharged Teams security with a game-changing update that automatically blocks suspicious bots from crashing your meetings. Now, you can keep unwanted guests out for good, with no need for manual approval.

Analyst 207
Person working at desk with laptop in a neutral office environment.

Microsoft Rolls Out Classic Theme for New Outlook Users

Get ready to experience Outlook like never before - Microsoft is rolling out a new Classic Theme for users of the New Outlook, bringing a coordinated visual refresh across the platform. This exciting update will be available to all users by late October, and can be easily turned on or off at any time.

Analyst 207
Empty office setting with laptop and blurred background folder list.

Microsoft Disrupts Search Function in Microsoft 365 Apps

Some Microsoft 365 users are experiencing search disruptions in key services like SharePoint Online, OneDrive, and Outlook. The issue, affecting users connected to specific infrastructure, is limited to searching for content within these apps.

Analyst 207
Blurred office workstation with scattered papers and a small potted plant nearby.

Phisher Breaches US Defense Supplier's Microsoft 365 Account

A phishing scam led to a breach of a US defense supplier's Microsoft 365 account, exposing sensitive data including customer communications, engineering docs, and potentially export-controlled tech info. The intruder gained access to mailbox contents, but the company found no evidence that the data was copied or exfiltrated.

Analyst 207
Laptop on a desk in a brightly-lit office setting with a person's hand nearby.

Kali365 Exploits Microsoft Authentication in US Firms

Meet Kali365, a sneaky device-code phishing kit that's exploiting Microsoft authentication to infiltrate US firms, with over 80 public sessions compromised weekly. By masquerading as trusted services, Kali365 tricks victims into handing over access to their Microsoft 365 email, documents, and cloud resources.

Analyst 207
Office setting with phone and laptop on a table, surrounded by mid-tone decor and daylight.

Phishing Service Greatness Exploits RingCentral to Target Microsoft 365 Accounts

A recent security bulletin from RingCentral may have inadvertently given hackers a blueprint for a phishing campaign, as a notorious phishing service known as Greatness has begun targeting Microsoft 365 accounts with sophisticated attacks. Greatness, a phishing-as-a-service platform, has upgraded its tactics to include advanced threats like adversary-in-the-middle attacks and device-code phishing flows.

Analyst 207
Hotel business area with people in background, focusing on Wi-Fi access point and device with login screen.

Microsoft Links Russian Hackers to Hotel Wi-Fi Attacks Exploiting Microsoft 365 Accounts

Microsoft has uncovered a sneaky hacking campaign, dubbed CaptiveCrunch, where Russian threat actors have been exploiting hotel and conference Wi-Fi to steal Microsoft 365 accounts and install malware since early May. The culprits behind this are Midnight Blizzard, a notorious Russian hacking group, and a sub-cluster known as Storm-2945.

Analyst 207
Wi-Fi router on a table in a hotel lobby, surrounded by blurred travelers.

Hackers Target Hotel Wi-Fi to Steal Microsoft 365 Accounts

Hackers are targeting hotel Wi-Fi networks to steal Microsoft 365 accounts from unsuspecting travelers, with a widespread campaign affecting various industries across multiple countries. This sneaky tactic redirects visitors to attacker-controlled sites, putting business travelers at risk of having their sensitive information compromised.

Analyst 207
Technicians inspect rows of computer servers and networking equipment in a brightly-lit server room.

Microsoft Outage Exposes Flaw in Automated Maintenance Process

Microsoft is launching a thorough investigation into its automated maintenance process after a recent outage, focusing on safety checks and process improvements to prevent future disruptions. The analysis comes on the heels of a significant disruption to Microsoft 365 services, affecting thousands of users.

Analyst 207
Busy office with people working on laptops, some looking frustrated, amidst empty computer screens and papers.

Microsoft 365 Outage Disrupts Teams, SharePoint Services

Microsoft 365 suffered a major outage on July 23, with over 2,400 users reporting issues with Teams, SharePoint, and other services. The sudden surge in errors left many users and administrators scrambling for answers.

Analyst 207
Blurred Microsoft Copilot interface on a computer screen in a corporate setting.

Security Fears Stall Microsoft Copilot Rollouts

Two-thirds of organizations are hitting the brakes on Microsoft Copilot rollouts, citing fears that the AI assistant could inadvertently spill confidential data. This widespread hesitation is driven by top-level concerns that Copilot might expose sensitive information from corporate systems.

Analyst 207
Law enforcement officers and investigators gather around a table with laptops and papers in a briefing room with a global…

Law Enforcement Disrupts Kratos Phishing Kit Targeting Microsoft 365 Sessions

In a major win for cybersecurity, law enforcement agencies have dismantled the notorious Kratos Phishing Kit, pulling over 200 servers offline and disrupting thousands of phishing campaigns targeting Microsoft 365 sessions. The operation, coordinated with Indonesian authorities, is estimated to have impacted around 1,800 paying customers who were using Kratos to run approximately 15,000 phishing campaigns monthly.

Analyst 207
Brightly-lit office setting with computer workstation and calendar showing May 13, 2050 date.

HollowGraph Malware Exploits Microsoft Graph for Stealthy C2 Comms

Meet HollowGraph, a sneaky malware that hijacks Microsoft 365 calendars to secretly receive commands and steal data, using a clever dead-drop technique to stay under the radar. It creates seemingly innocuous calendar events with cryptic titles and attachments to covertly communicate with its masters.

Analyst 207
Empty office with laptop on desk, blurred screen, in front of cityscape window and subtle calendar display.

HollowGraph Malware Exploits Microsoft 365 Calendar for Covert C2 Channel

Meet HollowGraph, a sneaky espionage implant that hijacks Microsoft 365 calendars to secretly communicate with its operators, never even touching an attacker-controlled server. By masquerading as a harmless calendar event, HollowGraph quietly receives instructions and sends stolen data under the radar.

Analyst 207
Laptop on office desk shows Microsoft 365 calendar with blurred cityscape in background.

Malware Hides in Microsoft 365 Calendars via HOLLOWGRAPH Campaign

Meet HOLLOWGRAPH, a sneaky malware that's hiding in plain sight - using Microsoft 365 calendars to pull off a highly targeted espionage threat. This compact implant is reading and writing secret messages, all while masquerading as a harmless calendar event.

Analyst 207
Laptop screen displays blurred Microsoft 365 calendar in office setting with notebook and pen nearby.

HollowGraph Malware Exploits Microsoft 365 Calendars for Covert C2 Communications

Meet HollowGraph, a sneaky new Windows malware that's exploiting Microsoft 365 calendars to secretly communicate with hackers, using trusted services to hide in plain sight. This highly targeted threat can turn a compromised calendar into a covert channel for stolen data and malicious instructions.

Analyst 207
Office setting with laptop showing Microsoft 365 interface and scattered papers.

ACR Stealer Exploits ClickFix Lures to Target Microsoft 365 Files

Microsoft's Defender Experts team uncovered a sneaky ACR Stealer campaign that uses ClickFix lures to swipe sensitive Microsoft 365 files, browser passwords, and authentication tokens from unsuspecting users. This stealthy attack leaves enterprise environments vulnerable, with stolen data including PDFs, synced OneDrive and SharePoint folders, and more.

Analyst 207
Blurred login page on a laptop screen in a cluttered modern office setting.

Phishing Kits Target Microsoft 365 Accounts, Evade Multi-Factor Authentication

Beware of phishing kits targeting Microsoft 365 accounts, which can cleverly evade multi-factor authentication and put sensitive data like customer info, financial records, and internal communications at risk. These sneaky attacks use social engineering tactics to trick victims into handing over access to their accounts.

Analyst 207
Person working on laptop with smartphone nearby in a casual setting.

Forg365 Phishing Service Targets Microsoft 365 with Advanced Device Code Theft

Meet Forg365, a sophisticated phishing service that's targeting Microsoft 365 users with advanced device code theft capabilities, offering a disturbingly user-friendly operator panel and a subscription-based model starting at just $400 a month. This illicit toolkit is being sold on Telegram, putting sensitive data at risk with its legitimate email delivery infrastructure and AI-powered email generation.

Analyst 207
Cramped server room with laptop and cables in ordinary indoor lighting.

Evilginx Phishing Ops Expose Microsoft 365 MFA Weaknesses

A French security firm stumbled upon a live Microsoft 365 phishing operation when a simple Python command was left exposed in a readable file, revealing a treasure trove of sensitive data. This lucky discovery shed light on the alarming weaknesses in Microsoft 365's multi-factor authentication.

Analyst 207
Blurred laptop screen with phishing email on a desk in a brightly-lit office setting.

Forg365 Phishing Platform Exploits AI to Target Microsoft 365 Accounts

Meet Forg365, a sneaky new phishing platform that uses AI to make it easy for hackers to target Microsoft 365 accounts and steal sensitive info. This phishing-as-a-service operation offers a range of tools, including AI-generated lures, to help cybercriminals launch convincing attacks.

Analyst 207