@dannyjpalmer@infosec.exchange
Post #816401
2026-01-09 16:00 UTC
A surge in phishing attacks which exploit email routing settings and misconfigured domain spoofing protections to spoof domains and make malicious emails appear as if they were sent from within the organization are targeting Microsoft 365 accounts.
Microsoft Threat Intelligence has warned that the attacks are themed around phoney messages from HR departments and IT security teams and are being deployed in attempts to steal login credentials.
While the attack vector isn’t new, Microsoft said there’s been a significant rise in attacks deploying these techniques since May 2025 and they’re commonly used in conjunction with phishing-as-a-service kits like Typhoon2FA.
(By me for Infosecurity Mag)
https://www.infosecurity-magazine.com/news/phishing-exploits-misconfigured/
#cybersecurity #phishing
Replies (1)
-
@T2R@infosec.exchange 2026-01-11 14:56
@dannyjpalmer what they should do is limit the email functionality of these trial O365 accounts to only internal emails. I get a ton of email from blahblah.onmicrosoft.com type of domains all the time.