Russian cyber attacks have spotted Microsoft teams with a new phishing campaign


  • Microsoft has spotted a new phishing attack vector in the wild
  • Storm-2372 steals access tokens in the Microsoft teams
  • The group was linked to Russia to an average confidence

A new phishing campaign has been spotted using “phishing the device code” through Microsoft teams to target governments, NGOs and other industries across Europe, America North, Africa and the Middle East.

The attack, spotted by Microsoft itself, operates the invitations to the videoconference meeting of the teams who encourage the victim to enter a device code generated by the attacker, which means that the victim gives valid access tokens , giving the attacker access to the emails of victims and sensitive data.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top