/plushcap/analysis/cloudflare/july-bonus-microsoft-spear-phishing

July bonus Microsoft spear phishing

What's this blog post about?

Area 1 Security has identified a new Microsoft phishing campaign, dubbed "Summer Bonus," targeting frontline workers during the pandemic. The attackers leverage social engineering techniques and flaws in legacy email solutions to deceive recipients into divulging their Microsoft credentials. Two variants of this campaign have been observed: one using Microsoft SharePoint notifications and another spoofing Microsoft Planner emails. Both phishing attempts lead victims to a fake login portal hosted on cloud-based platforms like Google AppSpot, Azure, and Amazon Web Services (AWS). The attackers use multiple cloud services throughout the attack process to evade detection.

Company
Cloudflare

Date published
Aug. 17, 2020

Author(s)
Elaine Dzuba

Word count
1601

Hacker News points
None found.

Language
English


By Matt Makai. 2021-2024.