logo

Microsoft Unveils Advanced Defense Techniques Against Evolving AiTM Attacks

ID: f2396d97-de15-5301-9de3-2ab8abdfda05

STIX ID: report--f2396d97-de15-5301-9de3-2ab8abdfda05

Feed Name: Cyber Press

Threat Score
70/100

Date Published: 2025-05-30

Date Updated: 2026-04-19

Author: Mandvi

...
...

Microsoft reports a rise in sophisticated AiTM phishing and social-engineering attacks targeting cloud identities — including use of phishing-as-a-service (e.g., Evilginx), OAuth device-code and consent phishing, tenant-based Teams abuse, and AI-enhanced lures. The advisory names multiple actor clusters employing these techniques and recommends defensive controls such as risk-based Conditional Access, phishing-resistant MFA and passkeys, Exchange/Defender protections, Zero Trust, app consent restrictions, and user training to reduce account compromise and lateral movement.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.