Phishing Campaigns Abuse Trusted Cloud Platforms, Raising New Risks for Enterprises
ID: f5bc68b6-3752-5ea2-acd5-7975941ee567
STIX ID: report--f5bc68b6-3752-5ea2-acd5-7975941ee567
Feed Name: HackRead
Threat Score
ANY.RUN researchers describe a wave of phishing campaigns that abuse legitimate cloud/CDN hosting (Google, Microsoft, Cloudflare, Azure Blob, Firebase, AWS CloudFront) to bypass reputation-based controls and target corporate accounts; interactive sandbox execution reveals runtime behaviors (redirects, gated pages, fake Microsoft 365 logins, credential harvesting) that static analysis misses and accelerates detection and response.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
