EvilProxy Phishing Campaign Exploits Microsoft 365 Users and Executives

1 min read
Source: BleepingComputer
EvilProxy Phishing Campaign Exploits Microsoft 365 Users and Executives
Photo: BleepingComputer
TL;DR Summary

EvilProxy, a popular phishing platform, has been used in a large-scale campaign targeting Microsoft 365 accounts. Researchers have observed 120,000 phishing emails sent to over a hundred organizations, primarily impacting high-ranking executives. EvilProxy employs reverse proxies to steal authentication cookies and bypass multi-factor authentication. The campaign impersonates popular brands and utilizes open redirections to evade detection. Once an account is compromised, the threat actors establish persistence by adding their own multi-factor authentication method. Organizations are advised to increase security awareness, implement stricter email filtering rules, and adopt FIDO-based physical keys to defend against this growing threat.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

2 min

vs 3 min read

Condensed

82%

53096 words

Want the full story? Read the original article

Read on BleepingComputer