logo

Manufacturers Lose Azure Creds to HubSpot Phishing Attack

ID: ec69e0a0-27a2-59af-8e42-b250428f368d

STIX ID: report--ec69e0a0-27a2-59af-8e42-b250428f368d

Feed Name: Dark Reading

Threat Score
70/100

Date Published: 2024-12-18

Date Updated: 2026-04-21

Author: Nate Nelson, Contributing Writer

...
...

A widespread phishing campaign targeted employees at European automotive, chemical, and industrial manufacturers using DocuSign-labeled PDFs and HubSpot forms that redirected victims to counterfeit Outlook Web App pages to harvest Microsoft credentials; attackers then registered devices and used VPN proxies to persist and escalate access within enterprise Azure cloud environments, enabling lateral movement and potential compromise of cloud resources.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.