Fake IT calls turn executive Microsoft 365 sessions into extortion
Executives are losing cloud data without malware after callers posing as internal IT capture Microsoft 365 sessions.
Executives are losing cloud data without malware after callers posing as internal IT capture Microsoft 365 sessions. The attackers guide targets to company-themed login pages that relay passwords and multifactor approvals in real time. They then steal the authenticated session token.
For more cybersecurity news, visit DailyCyber.News. Training and resources: BareMetalCyber.com.