Passkey-themed social engineering is being used to compromise identities and enable broader cloud attacks. Learn how threat actors establish MFA persistence, abuse Microsoft Graph for reconnaissance, ...
Microsoft details a million-email CEO fraud campaign and passkey-themed attacks that compromised cloud accounts and enabled ...
In an active social engineering campaign, attackers are impersonating IT help desks and using fake passkey setup requests to compromise employee identities and gain access to enterprise cloud data.
Attackers use social engineering, calling personal phones, to steal Microsoft 365 access and pull SharePoint and OneDrive ...
Threat actors are leveraging Graph API to identify lucrative targets, then passing their access to extortion groups like ...
PCMag Middle East on MSNOpinion
Show Your ID to Unlock Windows? Microsoft's Next Upgrade Gets Terrifyingly Personal
State laws are forcing Microsoft to bake age verification into Windows 11. Here's how your government ID and facial scans ...
Microsoft says threat actors posing as IT helpdesk staff are tricking employees into phishing and device-code attacks that ...
Microsoft says threat actors linked to ShinyHunters, Helix, and other extortion gangs are using passkey and single ...
IntroductionIn August 2026, Zscaler ThreatLabz observed new activity by the Pakistan-nexus threat actor APT36 in a campaign we’re tracking as Operation RapidRust. Since our last publication about the ...
Windows Report on MSN
Microsoft 365 Accounts Are Being Hijacked Through Fake Passkey Alerts
Extortion gangs are using passkey and SSO phishing to hijack Microsoft accounts, steal tokens, and exfiltrate Microsoft 365 ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results