Home / Aug 09, 2026 / Story
0
#6 The Hacker News general August 07, 2026 at 10:38 UTC

Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails

By [email protected] (The Hacker News)

AI Summary

An active AitM phishing campaign is compromising Microsoft 365 accounts by using residential proxies to disguise malicious sign-ins as consumer traffic, then targeting personnel involved in payroll and financial workflows to harvest related emails. The use of residential proxies to evade IP-reputation defenses combined with financial-fraud intent makes this a high-priority detection challenge for enterprise defenders.

Relevance score: 80.0/100

# More from August 09