Microsoft authentication system spoofed via phishing attack




  • Security researchers warning of new phishing campaign
  • This one abuses Microsoft’s authentication system
  • The goal is to steal sensitive data and login credentials

Cybercriminals are impersonating Microsoft’s Active Directory Federation Services (ADFS) to steal people’s passwords, log into their accounts, and grab any sensitive information found there, experts have warned.

A new report from cybersecurity researchers Abnormal Security noted how the attack starts with a phishing email, impersonating the target company’s IT team, and claiming that the system has been upgraded and that all users need to re-authenticate.

https://cdn.mos.cms.futurecdn.net/CT482eMSRL8PagRtuBVYNd-1200-80.jpeg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img