logo

Social Engineering Campaign Targets Microsoft Teams Users

ID: 4d8e2196-629a-5cb6-af49-21ad3d7bcd1a

STIX ID: report--4d8e2196-629a-5cb6-af49-21ad3d7bcd1a

Feed Name: KnowBe4 Blog

Threat Score
65/100

Date Published: 2025-12-10

Date Updated: 2026-04-28

Author: KnowBe4 Team

...
...

Researchers at CyberProof observed threat actors abusing Microsoft Teams' new "Chat with Anyone" feature to send direct messages impersonating IT support. Victims were coerced into joining Windows Quick Assist sessions and visiting a phishing URL where they entered Microsoft credentials, enabling attackers to install an info-stealer. The researchers warn that the upcoming full rollout of the feature may increase exposure and lead to more phishing-driven malware campaigns.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.