Threat Actors Leversges Google Cloud Services to Steal Microsoft 365 Logins
ID: 16620cc4-d49f-544e-b87f-a416ab54537e
STIX ID: report--16620cc4-d49f-544e-b87f-a416ab54537e
Feed Name: cybersecurityNews.com
Threat Score
A phishing campaign is abusing Google Cloud Application Integration's “Send Email” feature to deliver convincing emails from a verified Google address and redirect recipients through Google Cloud Storage and googleusercontent CAPTCHA pages to a fake Microsoft 365 login page that captures credentials; Malwarebytes researchers documented active campaigns and Google has taken steps to block some of the abuse.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
