Microsoft SharePoint exploited to hack several energy companies


  • Hackers exploit SharePoint emails to steal credentials from major energy companies
  • Attackers establish persistence with inbox rules and MFA forgery to maintain access.
  • Microsoft advises conditional access policies and phishing-resistant MFA for defense

Hackers are once again using SharePoint to target large energy companies, steal employee email IDs and spread the attack.

That’s according to a new report from Microsoft, which claims that “several” large organizations in the energy sector were already targeted.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top