KnowBe4 - Scammers Use a Mix of Stolen Credentials, Inbox Rules, and a Rogue Outlook Client Install to Phish Internal and External Victims

Organizations that are not using Microsoft’s multi-factor authentication are finding themselves victims of credential attacks that involve threat actors installing Outlook on a controlled device.



from KnowBe4 Security Awareness Training Blog https://blog.knowbe4.com/scammers-use-a-mix-of-stolen-credentials-inbox-rules-and-a-rogue-outlook-client-install-to-phish-internal-and-external-victims

Comments

Popular posts from this blog

KnowBe4 - Scam Of The Week: "When Users Add Their Names to a Wall of Shame"

Krebs - NY Charges First American Financial for Massive Data Leak

SBS CyberSecurity - In The Wild 166