Kryptovaluta-ticker:
sysadmin fra Cyber Security News

UNC6671 Automates Microsoft 365 Data Theft After Hijacking Employee Sessions

Tushar Subhra Dutta
6 hours ago
5 Visninger
0 Kommentarer
UNC6671 Automates Microsoft 365 Data Theft After Hijacking Employee Sessions

UNC6671 is carrying out data theft campaigns that begin with a phone call. The group poses as an IT helpdesk, claiming an urgent security migration is necessary. A convincing call and a fake sign-in page can turn an ordinary session into an entry point. The calls create urgency before employees can verify the request independently. The campaign is dangerous because it does not need to crack a password. It captures credentials and a live authentication token. That token lets an intruder act as the employee in Microsoft 365 or Okta, to access mail, files and other stored corporate data. Analysts at Google Cloud identified the activity during ongoing data theft and extortion. Google Cloud said in a report shared with Cyber...

Læs hele artiklen hos kilden.

Deltag i diskussionen — kommenter, stem og del links.

Registrer
Var dette nyttigt?
Del:

Kommentarer (0)

Log venligst ind eller opret dig for at deltage i diskussionen

Ingen kommentarer ennå. Bli den første til å kommentere!