Manufacturers Lose Azure Creds to HubSpot Phishing Attack
ID: ec69e0a0-27a2-59af-8e42-b250428f368d
STIX ID: report--ec69e0a0-27a2-59af-8e42-b250428f368d
Feed Name: Dark Reading
Threat Score
A widespread phishing campaign targeted employees at European automotive, chemical, and industrial manufacturers using DocuSign-labeled PDFs and HubSpot forms that redirected victims to counterfeit Outlook Web App pages to harvest Microsoft credentials; attackers then registered devices and used VPN proxies to persist and escalate access within enterprise Azure cloud environments, enabling lateral movement and potential compromise of cloud resources.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
