Ransomware groups identified as STAC5143 and STAC5777 have exploited Microsoft Office 365’s services and default settings to target enterprise users, according to an investigation by Sophos researchers. Microsoft Teams’ built-in remote control capabilities and default setting, which allows external users to contact internal users, were used to execute attacks. To prevent further attacks, organizations have been advised to restrict Teams calls from outside organizations and limit the use of remote access applications.

Anne Arundel government has made progress in securing systems since cyber incident, officials say – CBS News
Anne Arundel County government officials have reported making progress in securing systems following a cyber incident. Specific details of the incident were not provided, but