Microsoft: Phishing campaign used fake compliance notices to compromise employee accounts

Microsoft: Phishing campaign used fake compliance notices to compromise employee accounts

Phishers have been using fake workplace compliance notices to try to trick Microsoft account owners into signing in via a fake sign-in page, says the company’s Defender Research team. The email campaign targeted more than 35,000 users across 13,000 organizations in 26 countries, but concentrated primarily on targets in the United States. Microsoft didn’t say how many fell for the lure and had their account compromised. From inbox to account takeover The campaign, which ran … More

The post Microsoft: Phishing campaign used fake compliance notices to compromise employee accounts appeared first on Help Net Security.