cognitive cybersecurity intelligence

News and Analysis

Search

Hackers Abusing Microsoft Teams Meeting Invites to Trick Victims for Gaining Access

The cyberattack campaign by threat actor Storm-2372 utilizes Microsoft Teams meeting invites for device code phishing, targeting various sectors globally since August 2024. By exploiting the OAuth 2.0 flow, they steal authentication tokens to access victim accounts. Microsoft advises blocking risky authentication methods and educating users on phishing recognition to mitigate such threats effectively.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts