Microsoft Office SharePoint Targeted With High-Risk Phish, R

Microsoft Office SharePoint Targeted With High-Risk Phish, Ransomware Attacks


minute read
Share this article:
SharePoint servers are being picked at with high-risk, legitimate-looking, branded phish messages and preyed on by a ransomware gang using an old bug.
A phishing campaign, discovered by researchers at Cofense, is draping itself in a Microsoft Office SharePoint theme and successfully bypassing security email gateways (SEGs). In a post on Tuesday, the firm said that this is an example of why it’s not always prudent to share documents via Microsoft’s hugely popular, widely used SharePoint collaboration platform. 
The phish is targeting Office 365 users with a legitimate-looking SharePoint document that claims to urgently need an email signature. The campaign cropped up in a spot that’s supposed to be protected by Microsoft’s own SEG. This isn’t the first time that we’ve seen the SEG sanctuary get polluted:: In December, spearphishers spoofed Microsoft.com itself to target 200 million Office 365 users, successfully slipping past SEG controls due to Microsoft’s reported failure to enforce domain-based message authentication, reporting & conformance (DMARC): an email authentication protocol built specifically to stop exact domain spoofing (SPF/DKIM).

Related Keywords

Iran , Iranian , Jeff Costlow , Avihai Ben Yossef , Microsoft Office Sharepoint , Microsoft Exchange , Ibm , Microsoft , Response Urgently , Point Phishing Attack , Click Image , X Force Threat Activity Report , Pulse Secure , Gang Pings , Spain Via , Microsoft Sharepoint , Cobalt Strike , Dark Net , இரண் , இராநியந் , ஜெஃப் செலவு , மைக்ரோசாஃப்ட் அலுவலகம் பங்கு புள்ளி , மைக்ரோசாஃப்ட் பரிமாற்றம் , ஐபீயெம் , மைக்ரோசாஃப்ட் , கிளிக் செய்க படம் , துடிப்பு பாதுகாப்பானது , மைக்ரோசாஃப்ட் பங்கு புள்ளி , கோபால்ட் வேலைநிறுத்தம் , இருள் நிகர ,

© 2025 Vimarsana