Microsoft warns hackers are exploiting password resets to gain access to user accounts – here’s how to stay safe



  • Microsoft researchers warn Storm‑2949 is abusing the Self‑Service Password Reset flow to hijack accounts
  • Attackers trick victims into approving MFA prompts via phone calls, then reset passwords and exfiltrate sensitive data
  • The campaign targets Microsoft 365 and Azure environments, with Microsoft urging tighter RBAC controls and monitoring of high‑risk operations

A hacking group known as Storm-2949 is abusing the password reset feature in Microsoft’s services to steal people’s login credentials, access their accounts, and exfiltrate as much sensitive data as possible.

A new report published by the Microsoft Defender Security Research Team claims that at the heart of this campaign is the Self-Service Password Reset (SSPR) flow found in the Microsoft ecosystem.

https://cdn.mos.cms.futurecdn.net/89bxEtNaSo2H7h4SqvoeRd-2560-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

Leave a reply

Please enter your comment!
Please enter your name here

spot_imgspot_img