
BigBear Microsoft 365 phishing service bypasses MFA at 258 organizations
Phishing-as-a-service framework BigBear 2.0 bypassed MFA at 258 organizations, stealing over 5,000 Microsoft 365 credentials.
Stories tagged “Microsoft 365.”
12 stories

Phishing-as-a-service framework BigBear 2.0 bypassed MFA at 258 organizations, stealing over 5,000 Microsoft 365 credentials.

Microsoft confirms that some users are experiencing issues searching in Microsoft 365 apps, including Outlook on the web, Outlook desktop, SharePoint Online, and OneDrive. The root cause is a recent deployment that causes resource utilization problems.

Cybersecurity researchers have called attention to an active phishing campaign that employs adversary-in-the-middle (AitM) techniques to take control of Microsoft 365 accounts with an aim to identify key personnel involved in financial workflows and gather related email.

The Greatness phishing-as-a-service platform is now abusing RingCentral's trusted sender reputation to bypass email filters and harvest Microsoft 365 credentials via adversary-in-the-middle and device-code attacks.

A global campaign targeting hospitality Wi-Fi networks has been linked to the Russian threat actor Midnight Blizzard. The attackers use custom malware to steal Microsoft 365 accounts and have been active since at least early May.

Hackers are changing the DNS settings on Wi-Fi devices at hotels and conference centers to redirect users to fake Microsoft 365 login pages. This campaign has been ongoing since at least June and impacts organizations in various sectors.

Microsoft blames a maintenance bug for a massive Microsoft 365 outage that affected various services, including Teams, SharePoint, and OneDrive. The company says a bug in its automated network maintenance request system caused the outage by mistakenly removing IP routes f…

Microsoft Teams and several Microsoft 365 services are experiencing an ongoing outage, with users reporting problems accessing Teams, SharePoint, Excel and the Microsoft 365 Admin Center.

A new phishing-as-a-service (PhaaS) operation called Forg365 is targeting Microsoft 365 accounts using a combination of device code phishing, adversary-in-the-middle (AitM) tactics, antibot evasion, artificial intelligence (AI)-assisted lure creation, and post-compromise …

A new phishing-as-a-service (PhaaS) operation called Forg365 focuses on stealing Microsoft 365 accounts by combining adversary-in-the-middle (AiTM) and device code methods with AI-assisted lure generation.

Cisco Talos researchers discovered a new phishing-as-a-service (PhaaS) platform called ARToken, which appears to be an affiliate of the EvilTokens phishing platform. The platform allows attackers to steal Microsoft 365 authentication tokens and access various services.

Microsoft 365 backup is not enough for business data protection, as it operates under a shared responsibility model. Organizations need third-party solutions for dedicated backup, security, and recovery capabilities.