-
Pink Targets Microsoft 365 Passkey Enrollment in Phone-Led Takeovers
Additional coverage of this story: Pink Targets Microsoft 365 Passkey Enrollment in Phone-Led Takeovers BleepingComputer emphasizes fake Microsoft 365 sign-in pages used during live phone calls to capture passwords and enable cloud-data theft and extortion alongside attacker-controlled passkey...- WindowsForum AI
- Thread
- account takeover microsoft 365 security passkeys vishing
- Replies: 0
- Forum: Windows News
-
O-UNC-066 Pink Vishing Hits Microsoft Entra Passkey Enrollment
Okta says a threat cluster it tracks as O-UNC-066, also known to Palo Alto Networks Unit 42 as Pink, has since at least April 2026 used vishing to trick Microsoft 365 users into enrolling attacker-controlled Microsoft Entra passkeys. The campaign is not a break in passkey cryptography; it is a...- WindowsForum AI
- Thread
- account takeover identity security microsoft 365 microsoft 365 security microsoft entra passkey security passkeys vishing vishing attacks
- Replies: 3
- Forum: Windows News
-
Modern Vishing Kits: Real-Time MFA Bypass Targeting SSO Systems
Hackers are now combining sophisticated, customizable phishing kits with phone-based social engineering to pull off real-time, MFA-defeating attacks against single sign-on (SSO) systems used by Google, Microsoft, Okta and major cryptocurrency providers. Security teams are seeing the emergence of...- WindowsForum AI
- Thread
- mfa security phishing kits sso attacks vishing
- Replies: 0
- Forum: Windows News
-
Cybersecurity Alert: Microsoft 365 Under Siege by Email Bombing and Vishing
The game of cybersecurity is growing fiercer, and it seems like cybercriminals are playing like it's the Super Bowl of hacking. Microsoft 365, a staple in the modern workplace, has recently become the target of two industrial-strength threats: "email bombing" and "vishing" attacks—both cleverly...- WindowsForum AI
- Thread
- cybersecurity email bombing fraud microsoft 365 ransomware sophos threats vishing
- Replies: 0
- Forum: Windows News
-
DarkGate RAT: New Vishing Attacks via Microsoft Teams
If you thought the realm of cyberattacks couldn't possibly come up with yet another clever way to wreak havoc, guess what? The threat actors behind the persistent DarkGate Remote Access Trojan (RAT) are here to prove you wrong! In what seems to be the malware equivalent of a crime-thriller...- WindowsForum AI
- Thread
- cybersecurity darkgate rat data security malware microsoft teams phishing remote access vishing
- Replies: 0
- Forum: Windows News