#6
The Hacker News
general
August 07, 2026 at 10:38 UTC
Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails
By [email protected] (The Hacker News)
AI Summary
An active AitM phishing campaign is compromising Microsoft 365 accounts by using residential proxies to disguise malicious sign-ins as consumer traffic, then targeting personnel involved in payroll and financial workflows to harvest related emails. The use of residential proxies to evade IP-reputation defenses combined with financial-fraud intent makes this a high-priority detection challenge for enterprise defenders.
Relevance score: 80.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →