Switch language한국어
Back to the list

Internal Microsoft account being used to send scams, phishing links

TL;DR AI

Key summary

2 min read
  1. Scammers are abusing a real Microsoft notification email address to send phishing messages.

  2. Researchers say attackers can manipulate Microsoft tenant branding so Microsoft delivers a message with the scammer’s text in the subject line.

  3. Because the email comes from a trusted Microsoft sender, it can look authentic and slip past common spam and phishing filters.

  4. The tactic raises the risk of credential theft and financial fraud for Microsoft 365 users.

Read the original