'
Breaking
May 4, 2025

This Cyber Attack Targets Microsoft 365 Accounts Emily Long | usagoldmines.com

A new cyberattack is targeting Microsoft 365 users through Signal and WhatsApp messages, with hackers impersonating government officials in order to gain access to accounts.

According to reporting from Bleeping Computer, bad actors—who are believed to be Russians pretending to be European political officials or diplomats—are contacting employees of organizations working on issues related to Ukraine and human rights. The end goal is to trick targets into clicking an OAuth phishing link leading them to authenticate their Microsoft 365 credentials.

This scam, first discovered by cybersecurity firm Volexity, has focused specifically on organizations related to Ukraine, but a similar approach could be used more widely to steal user data or take over devices.

How the Microsoft 365 OAuth attack works

This attack typically begins with targets receiving a message via Signal or WhatsApp from a user posing as a political official or diplomat with an invitation to a video call or conference to discuss issues related to Ukraine.

According to Volexity, attackers may claim to be from the Mission of Ukraine to the European Union, the Permanent Delegation of the Republic of Bulgaria to NATO, or the Permanent Representation of Romania to the European Union. In one variation, the campaign starts with an email sent from a hacked Ukrainian government account followed by communication via Signal and WhatsApp.

Once a thread is established, bad actors send victims PDF instructions along with an OAuth phishing URL. When clicked, the user is prompted to log into Microsoft and third-party apps that utilize Microsoft 365 OAuth and redirected to a landing page with an authentication code, which they are told to share in order to enter the meeting. This code, which is valid for 60 days, gives attackers access to email and other Microsoft 365 resources, even if victims change their passwords.

How to spot the Microsoft 365 OAuth attack

This attack is one of several recent threats abusing OAuth authentication, which can make it harder to identify as suspect, at least from a technical point of view. Volexity recommends setting up conditional access policies on Microsoft 365 accounts to approved devices only, as well as enabling login alerts.

Users should also be wary of social engineering tactics that play on human psychology to successfully carry out phishing and other types of cyber attacks. Examples include messages that are unusual or out of character—especially for a sender you know or trust—communication that prompts an emotional response (like fear or curiosity), and requests that are urgent or offers that are too good to be true.

A social engineering explainer from CSO advises a “zero-trust mindset” as well as watching out for common signs like grammar and spelling mistakes and instructions to click links or open attachments. Screenshots of the Signal and WhatsApp messages shared by Volexity show small errors that give them away as potentially fraudulent.

 

This articles is written by : Nermeen Nabil Khear Abdelmalak

All rights reserved to : USAGOLDMIES . www.usagoldmines.com

You can Enjoy surfing our website categories and read more content in many fields you may like .

Why USAGoldMines ?

USAGoldMines is a comprehensive website offering the latest in financial, crypto, and technical news. With specialized sections for each category, it provides readers with up-to-date market insights, investment trends, and technological advancements, making it a valuable resource for investors and enthusiasts in the fast-paced financial world.

Recent:

Learn to code plus get the same tools as the pros — All for $55.97 | usagoldmines.com

Nobody Wants This season 2: everything we know so far about the hit Netflix show’s return | usagold...

Asking remote job candidates this shocking question could save your company big bucks, security expe...

Amazon Has Every M4 MacBook Air on Sale for Up to $165 Off This Weekend Mitchel Broussard | usagoldm...

A 100-lumens DVD-class DLP projector, a 64-megapixel night camera and... a camping light: that's not...

128TB SSD going mainstream as Innodisk announces its Gen5 flagship solid state drive with 14GBps rea...

Wi-Fi? More like Wow-Fi - researchers transmit almost 2 million Netflix HD streams simultaneously us...

iPhone 17e Looking Less Likely — Here's Why Joe Rossignol | usagoldmines.com

MacBooks are now legitimate gaming machines – and the future looks promising | usagoldmines.com

Windows 7 took ages to load if you had a solid background. Now we know why | usagoldmines.com

Apple Plans Split iPhone Launch Strategy: Pro and Foldable in Fall 2026, Standard in Spring 2027 Jul...

iPhone 18 Pro Models Rumored to Feature Under-Screen Face ID With Top-Left Camera Hole Joe Rossignol...

20th-Anniversary iPhone Will Reportedly Feature an All-Screen Design Joe Rossignol | usagoldmines.co...

The latest Sony WH-1000XM6 leaks may have revealed the design and pricing of the headphones | usago...

RIP the DJI Phantom, the drone that started it all – and got me into aerial photography | usagoldmi...

iPhone 17 Air Expected to Have Battery Case Due to 'Worse' Battery Life Joe Rossignol | usagoldmines...

Businesses globally are set to lose $15 billion in 2025 because of fraudulent chargebacks, says Mast...

AirPods Pro 2 Available for Lowest Price of the Year so Far at $169, Plus AirPods 4 at $99 Mitchel B...

NYT Strands hints and answers for Sunday, May 4 (game #427) | usagoldmines.com

Quordle hints and answers for Sunday, May 4 (game #1196) | usagoldmines.com

NYT Connections hints and answers for Sunday, May 4 (game #693) | usagoldmines.com

Top Stories: Epic Games Victory Over Apple, iPhone 17 Rumors, and More MacRumors Staff | usagoldmine...

After Thunderbolts*, Marvel has the perfect opportunity to do the unthinkable with The Fantastic Fou...

USB flash drives are going extinct. Use these faster alternatives instead | usagoldmines.com

We just got another big hint that the Samsung Galaxy S25 FE is on the way | usagoldmines.com

700 projectors assembled at an art exhibition to create the world's largest digital art experience: ...

In his first 100 days, Trump launched an “all-out assault” on the environment Kiley Bense, Bob Berwy...

ICYMI: the 8 biggest tech stories of the week, from ChatGPT's shopping upgrade to GTA 6 delays | us...

Grocery prices may be insane, but this can help you save 25% | usagoldmines.com

I canceled Prime Video for Apple TV+ in May, and it's all for these 3 movies and shows | usagoldmin...

We finally know a little more about Amazon’s super-secret satellites Stephen Clark | usagoldmines.co...

iPhone 17: What's New With the Cameras Juli Clover | usagoldmines.com

You can put Google Gemini right on your smartphone home screen – here’s how erichs211@gmail.com (Eri...

Lyft’s New ‘Silver’ Accounts Should Make Hailing a Rideshare Easier for Older Passengers Emily Long ...

DOJ confirms it wants to break up Google’s ad business Ryan Whitwam | usagoldmines.com

Health care company says Trump tariffs will cost it $60M–$70M this year Beth Mole | usagoldmines.com

Change These Settings on Your Gaming Laptop to Save Battery and Play Longer Eric Ravenscraft | usago...

These Are the Biggest Skywatching Events in May Emily Long | usagoldmines.com

Apple Absorbs Tariff Costs While Electronics Prices Surge, But How Long Will It Last? Juli Clover | ...

Best Star Wars Day 2025 Deals – Shop new Lego sets, Funko Pops, Galaxy-themed tech, and more for May...

Judge on Meta’s AI training: “I just don’t understand how that can be fair use” Ashley Belanger | us...

Editorial: Censoring the scientific enterprise, one grant at a time Mary K. Feeney | usagoldmines.co...

What Today's Tariff Changes Mean for Your Online Shopping Habit Meredith Dietz | usagoldmines.com

Available Apple Intelligence Features Highlighted in New Ad Juli Clover | usagoldmines.com

You can now fact check anybody’s post in WhatsApp – here’s how erichs211@gmail.com (Eric Hal Schwart...

Trump’s 2026 budget proposal: Crippling cuts for science across the board John Timmer | usagoldmines...

Texas goes after toothpaste in escalating fight over fluoride Beth Mole | usagoldmines.com

Microsoft’s new “passwordless by default” is great but comes at a cost Dan Goodin | usagoldmines.com

Best gaming laptops 2025: What to look for and highest-rated models | usagoldmines.com

Best free password managers 2025: Online security doesn’t have to cost a thing | usagoldmines.com

I Can't Stop Making This Brazilian Cheesy Bread Allie Chanthorn Reinmann | usagoldmines.com

Spotify Can Now Show You More Payment Options in the iPhone App Jake Peterson | usagoldmines.com

This Tool Lets You Make Quick Photo Edits in Your Browser Without Uploading Anything Justin Pot | us...

Five Unusual, Fun Careers That Actually Pay Pretty Well Jeff Somers | usagoldmines.com

Apple Partners With Anthropic for Claude-Powered AI Coding Platform Juli Clover | usagoldmines.com

Obscure Chinese laptop vendor unveils mobile workstation with 13th gen Core i9 CPU and 32GB of RAM -...

Spotify updates iOS app in record time with new pricing options – leaving fans wondering why other f...

Zelle is down – live updates on the ongoing outage hitting the platform to send money between friend...

Is Netflix’s cheaper ad plan worth it? We break it down | usagoldmines.com

My Favorite Amazon Deal of the Day: The Google Pixel 9a Daniel Oropeza | usagoldmines.com

Nintendo Just Released Another Switch Update Jake Peterson | usagoldmines.com

TikTok hit by a €530 million fine in the EU for illegally sending Europeans' data to China chiara.ca...

ChatGPT could have multiple preset personalities for you to interact with in the future, to help com...

US DOD wants right-to-repair provisions in Army contracts to access tools, software, and technical d...

Claude’s AI research mode now runs for up to 45 minutes before delivering reports Benj Edwards | usa...

Screwworms are coming—and they’re just as horrifying as they sound Beth Mole | usagoldmines.com

AI strategists, Formula 1, even an electric NASCAR? We talk racing with GM. Jonathan M. Gitlin | usa...

Roku to acquire the budget streaming service Frndly TV | usagoldmines.com

NAS drives aren’t just for nerds! 6 real benefits everyone can use | usagoldmines.com

5 signs a hacker is watching you through your PC’s webcam | usagoldmines.com

Best Windows Hello webcams 2025: Add biometric login to your PC | usagoldmines.com

How to Choose Between ChatGPT, Gemini, and Perplexity's Deep Research Tools Khamosh Pathak | usagold...

You Can Now Talk to Perplexity AI Directly From WhatsApp Khamosh Pathak | usagoldmines.com

The MacRumors Show: Apple Watch Series 11, Ultra 3, and SE 3 Rumors Hartley Charlton | usagoldmines....

“No Apple tax means we will lower prices” - Proton promises price drop after US ruling against Apple...

What is the release date and time for The Last of Us season 2 episode 4? tom.power@futurenet.com (To...

Nvidia CEO Jensen Huang just got a pay rise for the first time in a decade | usagoldmines.com

Samsung's One UI 7 update is finally coming to older Galaxy phones in the US jamie.richards@futurene...

I took my Meta Quest 3 on a 3,000-mile flight so you don’t have to – here's what I learned hamish.he...

White House budget seeks to end SLS, Orion, and Lunar Gateway programs Eric Berger | usagoldmines.co...

Some flies go insomniac to ward off parasites Elizabeth Rayne | usagoldmines.com

“Blatantly unlawful”: Trump slammed for trying to defund PBS, NPR Ashley Belanger | usagoldmines.com

Cyborg cicadas play Pachelbel’s Canon Jennifer Ouellette | usagoldmines.com

Google finally reveals NotebookLM Android app, but you can’t use it yet Ryan Whitwam | usagoldmines....

I saw how an “evil” AI chatbot finds vulnerabilities. It’s as scary as you think | usagoldmines.com

Why you shouldn’t waste your money on a membrane keyboard | usagoldmines.com

Microsoft is now forcing new users to adopt a passwordless future | usagoldmines.com

Fears confirmed! Rockstar reveals Grand Theft Auto VI release date | usagoldmines.com

Samsung’s Newest Devices Get Open Enrollment Period Tim | usagoldmines.com

Spotify Updates iPhone App With Out-of-App Payment Options in U.S. Joe Rossignol | usagoldmines.com

Hacker pleads guilty to illegally accessing Disney Slack channels and stealing huge tranche of data ...

Epic Games Store completely eliminates revenue fees for smaller developers Kyle Orland | usagoldmine...

Spotify seizes the day after Apple is forced to allow external payments Kevin Purdy | usagoldmines.c...

Today’s best laptop deals: Save big on work, school, home use, and gaming | usagoldmines.com

Google’s NotebookLM Coming to Android, Register for Access Tim | usagoldmines.com

This Amazon Fire TV Stick Is $30 Right Now Pradershika Sharma | usagoldmines.com

Apple Highlights Three Benefits of Apple Watch for Kids Without iPhones Joe Rossignol | usagoldmines...

Best Apple Deals of the Week: Amazon's Biggest Sale of the Year so Far Has Low Prices on AirPods, iP...

Exclusive: This G1T4-M1N1 droid will follow you like R2-D2 jacob.krol@futurenet.com (Jacob Krol) | u...

Edge’s doomed challenge to Chrome is embarrassing for Microsoft – is it time to stop forcing the bro...

Leave a Reply