logo

New Microsoft Teams vulnerability

ID: 04b6eec5-390e-5ea8-8151-4e36ee9d2228

STIX ID: report--04b6eec5-390e-5ea8-8151-4e36ee9d2228

Feed Name: ThreatLocker Blog

Threat Score
70/100

Date Published: 2025-01-03

Date Updated: 2026-05-01

...
...

A security issue in Microsoft Teams allows attackers to modify recipient IDs in message POST requests to make external accounts appear internal, enabling delivery of links and binaries (including malware) to targets; the report demonstrates a proof-of-concept using the TeamsPhisher tool and recommends mitigations such as ThreatLocker policies, Internet Ringfencing™, or disabling external tenant communications in Teams Admin Center.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.