Social Engineering Campaign Targets Microsoft Teams Users
ID: 4d8e2196-629a-5cb6-af49-21ad3d7bcd1a
STIX ID: report--4d8e2196-629a-5cb6-af49-21ad3d7bcd1a
Feed Name: KnowBe4 Blog
Threat Score
Researchers at CyberProof observed threat actors abusing Microsoft Teams' new "Chat with Anyone" feature to send direct messages impersonating IT support. Victims were coerced into joining Windows Quick Assist sessions and visiting a phishing URL where they entered Microsoft credentials, enabling attackers to install an info-stealer. The researchers warn that the upcoming full rollout of the feature may increase exposure and lead to more phishing-driven malware campaigns.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
