IEH Corporation told the SEC that a phished employee's Microsoft 365 mailbox exposed engineering files and potentially export-controlled technical data.
A voicemail-themed AitM phishing wave is taking over Microsoft 365 accounts to harvest payroll and finance email.
Researcher Hakon Maloy showed how hidden instructions in a Word file can alter Copilot output and copy themselves into new…
Threat actors compromised captive Wi-Fi gateways at hotels to silently redirect business travelers to fake Microsoft 365 login pages.
Group-IB discovered HOLLOWGRAPH, malware that uses Microsoft 365 calendars as covert command channels with events dated to 2050.
Microsoft observed two ACR Stealer campaigns using fake error messages to trick users into running code that steals credentials and…
Okta warns of a rise in voice phishing attacks where callers impersonate IT support to steal Microsoft 365 credentials and…
The SearchLeak chain weaponized three vulnerabilities in Microsoft 365 Copilot to exfiltrate sensitive data before server side sanitization could stop…
Sign in to your account