New Microsoft Teams vulnerability
ID: 04b6eec5-390e-5ea8-8151-4e36ee9d2228
STIX ID: report--04b6eec5-390e-5ea8-8151-4e36ee9d2228
Feed Name: ThreatLocker Blog
Threat Score
A security issue in Microsoft Teams allows attackers to modify recipient IDs in message POST requests to make external accounts appear internal, enabling delivery of links and binaries (including malware) to targets; the report demonstrates a proof-of-concept using the TeamsPhisher tool and recommends mitigations such as ThreatLocker policies, Internet Ringfencing™, or disabling external tenant communications in Teams Admin Center.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
