Back to the feed

~/article/attackers-call-employees-personal-phones-to-break-into-microsoft-365-acc-17c7gc
infoSource: Help Net Security

Attackers call employees’ personal phones to break into Microsoft 365 accounts

Attackers are calling or texting employees on their personal phones, posing as internal IT staff, in a social engineering campaign that tricks them into handing over access to corporate cloud accounts. Once inside, they pull files and email from Microsoft 365 apps, SharePoint, OneDrive, and inboxes, for weeks at a time, according to Microsoft Security Research. (Source: Microsoft) Researchers…

Read at the source

Summary written for cymesh.dev. The full article lives at Help Net Security.

~/cymesh.net

Certificates expire quietly

cymesh.net watches your TLS and SSL certificates and warns you before one lapses.

monitorsTLS/SSL expiry, chain and hostnamealertsemail, ahead of the expiry datescopenon-intrusive, read-only checks

Related

~/related/attackers-call-employees-personal-phones-to-break-into-microsoft-365-acc-17c7gc