Skip to content
Microsoft 365 logo

Microsoft 365 in the Media

231 mentions across press, blogs, and newsletters

Top coverageReutersTechRepublicTechRadarThe Next WebPCMag
1 major ·8 tech media

August 2026

Cybersecurity News

Hackers Bypass Microsoft 365 MFA and Hijack Finance Mailbox to Steal Payments

A single phishing email was enough to give attackers access to a finance employee’s Microsoft 365 account and redirect vendor payments. The incident shows how criminals can bypass multi-factor authentication without installing malware or breaking into a company device. The attackers used a target

Aug 20, 2026
GBHackers

Hackers Create Hidden Microsoft 365 Inbox Rules to Conceal Vendor Payment Fraud

Threat actors are increasingly abusing Microsoft 365 identity sessions rather than deploying malware, as shown in a cloud-only business email compromise (BEC). The attackers used an adversary-in-the-middle (AiTM) phishing kit to capture an authenticated Microsoft 365 session token, bypass multi-f

Aug 20, 2026
Cybersecurity News

Hackers Let Microsoft 365 Users Complete MFA, Then Steal Logged-In Sessions

A sophisticated Phishing-as-a-Service (PhaaS) platform marketed as Mirage2FA is enabling threat actors to bypass multi-factor authentication (MFA) by allowing Microsoft 365 users to complete their regular login process before covertly stealing the authenticated session. Threat researchers at ANY.

Aug 19, 2026
Cybersecurity News

Microsoft 365 Service Degradation Disrupts Users Across South America

Microsoft is responding to a regional outage that may leave users in South America unable to use multiple Microsoft 365 services. The company is tracking the disruption as issue MO1457636, a service degradation of the Microsoft 365 suite that began at 2:34 p.m. UTC on August 19, 2026 (8:04 p.m. I

Aug 19, 2026
Cybersecurity News

Microsoft 365 Search Outage Disrupts SharePoint, OneDrive, and Outlook Users Worldwide

Microsoft is actively managing a service disruption that has left a subset of enterprise users unable to search for content across SharePoint Online, OneDrive, Outlook on the web, and Outlook desktop. The incident, tracked in administrative portals under reference MO1456424, was confirmed after u

Aug 18, 2026
Computer World

New malware turns Microsoft 365 and Azure into its control center

<p class

Aug 18, 2026
BleepingComputer

Microsoft confirms outage affecting search in Microsoft 365 apps

Microsoft says some users are experiencing issues searching in Microsoft 365 apps, including Outlook on the web, Outlook desktop, SharePoint Online, and OneDrive. [...]

Aug 18, 2026
FirstPost

Microsoft unifies copilot and Microsoft 365 copilot into one app: Here’s what’s changing

Microsoft is rolling out a unified Copilot app that brings personal and productivity experiences together, while retiring features including Group Chat, Podcasts and Deep Search for consumers.

Aug 13, 2026
Thurrott

Microsoft is Unifying its Consumer Copilot App and Microsoft 365 Copilot into a Single App

Microsoft is preparing to unify its separate Consumer Copilot App and Microsoft 365 Copilot app into a single client that supports both personal and work accounts. The post <a href="https://www.thurrott.com/a-i/340382/microsoft-is-unifying-its-consumer-copilot-app-and-microsoft-365-copilot

Aug 13, 2026
Windows Central

Microsoft begins unified Copilot app rollout: Reveals major plan to merge Copilot and Microsoft 365 Copilot across all platforms, along with updated branding

We knew it was coming, and now it's official: Microsoft is beginning to rollout a new Copilot app that merges Copilot and Microsoft 365 Copilot under one experience.

Aug 13, 2026
XDA Developers

Windows 10 users are getting locked out of new Microsoft 365 features in a bid to push for Windows 11

Will it convince people to upgrade?

Aug 13, 2026
Finextra

S&P Global data integrated into Microsoft 365 Copilot

Microsoft has struck a deal to integrate S&P Global AI-ready data, insights and analytics into its 365 Copilot workflows and agentic experiences.

Aug 12, 2026
Help Net Security

ConnectSecure helps MSPs automate Microsoft 365 security remediation

ConnectSecure has announced that Microsoft 365 Auto Remediation and AI-powered Training Assessments are now live on the ConnectSecure platform. The capabilities help managed service providers (MSPs) address supported M365 security findings, create and measure assessments, support client training

Aug 12, 2026
Cybersecurity News

Payroll Pirates AiTM Phishing Hijacks Microsoft 365 Sessions and Targets Payroll Emails

Payroll Pirates are using phishing emails to seize Microsoft 365 sessions and search payroll-related mailboxes. The campaign turns a voicemail alert into a route for financial fraud, even when multi-factor authentication is enabled. The messages imitate an automated call notification and invite r

Aug 10, 2026
The Hacker News

Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails

Cybersecurity researchers have called attention to an active "widespread email-driven phishing campaign" that employs adversary-in-the-middle (AitM) techniques to take control of Microsoft 365 accounts with an aim to identify key personnel involved in financial workflows and gather related email. "

Aug 7, 2026
Cybersecurity News

UNC6671 Automates Microsoft 365 Data Theft After Hijacking Employee Sessions

UNC6671 is carrying out data theft campaigns that begin with a phone call. The group poses as an IT helpdesk, claiming an urgent security migration is necessary. A convincing call and a fake sign-in page can turn an ordinary session into an entry point. The calls create urgency before employees c

Aug 7, 2026
Cybersecurity News

Greatness PhaaS Bypasses Email Security and MFA to Hijack Microsoft 365 Accounts

Greatness has emerged as a phishing-as-a-service platform designed to steal Microsoft 365 access at a time when many organizations assume multi-factor authentication will stop account takeovers. Rather than simply collecting a password, it can capture a valid sign-in token that lets an attacker e

Aug 5, 2026
GBHackers

Stolen Greatness Tokens Provide Microsoft 365 Access More Than Two Weeks After Phishing

Stolen Greatness authentication tokens are providing sustained, MFA‑approved access to victim Microsoft 365 tenants for more than two weeks after the initial phish, underscoring that token replay – not password theft – is driving the persistence in this AiTM PhaaS ecosystem. Originally documented

Aug 5, 2026
Nerds.xyz

Cloudflare OS is an open-source AI alternative to Microsoft 365 and Google Workspace

<img alt="Cloudflare OS is an open-source AI alternative to Microsoft 365 and Google Workspace" class="attachment-large size-large wp-post-image" height="471" src="https://nerds.xyz/wp-content/uploads/2026/07/Cloudflar

Aug 5, 2026
Neowin

Microsoft suddenly pulls new Microsoft 365 Copilot feature after rollout with no explanation

Microsoft unexpectedly pulled a newly released Copilot admin feature after rollout, leaving customers waiting to see what happens ne

Aug 5, 2026
BleepingComputer

Phishing service spoofs RingCentral to steal Microsoft 365 accounts

The Greatness phishing-as-a-service (PhaaS) platform has expanded from credential phishing to adversary-in-the-middle attacks and device-code phishing targeting Microsoft 365 accounts. [...]

Aug 4, 2026
Techspot

Microsoft warns Russian hackers are hijacking hotel Wi-Fi to steal Microsoft 365 accounts

<img height="560" src="https://www.techspot.com/images2/news/ts3_thumbs/2026/08/2026-08-04-ts3_thumbs-28d.jpg" style="padding: 15px 0;" title="Microsoft warns Russian hackers are

Aug 4, 2026
Help Net Security

Russian hackers abuse hotel Wi-Fi networks to steal Microsoft 365 credentials and deploy malware

Midnight Blizzard, the Russian threat actor tied to the country’s foreign intelligence service, has spent months targeting users of public Wi-Fi networks at places like hotels and conference centers, according to new findings from Microsoft Threat Intelligence. Overview of the CaptiveCrunch

Aug 4, 2026
GBHackers

ChocoShell Steals Microsoft 365 Tokens and Browser Sessions From Travelers

ChocoShell is a PowerShell-based infostealer used in Microsoft’s newly disclosed “CaptiveCrunch” campaign to steal Microsoft 365 tokens, browser sessions, and Wi‑Fi credentials from travelers connecting to compromised hospitality networks worldwide. The operation, dubbed “CaptiveCrunch,” poisons

Aug 4, 2026

July 2026

Neowin

CMA investigates Microsoft for hiding Classic Microsoft 365 plans after 2025 AI price hikes

The CMA says Microsoft offered a limited-time Classic plan but didn't publicize it well enough. If found in breach, the CMA can fine M

Jul 30, 2026
FirstPost

Did Microsoft mislead Personal and Family customers? UK regulator probes higher Microsoft 365 subscription prices

Britain's antitrust regulator is investigating whether Microsoft misled Microsoft 365 subscribers over Copilot pricing, adding to growing global scrutiny of the company's software and AI practices.

Jul 29, 2026
Cybersecurity News

Dismantled Kratos Phishing Kits Acting as Blueprint for Others to Attack Microsoft 365 Users

Kratos is a phishing service built to steal Microsoft 365 credentials at scale. It evolved from the Sneaky2FA kit and gave affiliates ready-made login pages, hosting options, and evasion features that made fraudulent sign-ins harder to detect. The operation relied on phishing emails that led targ

Jul 28, 2026
GBHackers

Dismantled Kratos Phishing Kit Becomes Blueprint for Attacks on Microsoft 365 Users

The takedown of the Kratos phishing-as-a-service (PhaaS) platform in July 2026 has done little to slow the broader threat landscape. As security researchers warn that its leaked techniques and infrastructure patterns are already being repurposed in ongoing campaigns targeting Microsoft 365 enviro

Jul 28, 2026
Neowin

Microsoft 365 profile cards are getting a "major change", some IT admins should take action

A major Microsoft 365 change is coming soon, and organizations that ignore it could end up exposing more information than they intend

Jul 26, 2026
BleepingComputer

Microsoft blames massive Microsoft 365 outage on maintenance bug

Microsoft says a bug in its automated network maintenance request system caused Thursday's massive outage by mistakenly removing IP routes from more devices than intended, disrupting Azure and Microsoft 365 services. [...]

Jul 24, 2026
GBHackers

Hotel Wi-Fi DNS Poisoning Attacks Hijack Microsoft 365 Accounts Without Phishing

Adversaries are silently hijacking Microsoft 365 accounts by compromising hotel and conference-center Wi-Fi gateways and poisoning DNS no phishing emails, malicious attachments, or endpoint malware required. ReliaQuest assesses that the tradecraft closely mirrors prior APT28-linked router campaig

Jul 24, 2026
Cybersecurity News

Microsoft 365 Services Outage Impacted Teams, Copilot, Purview and Other Services

A Microsoft 365 outage disrupted access to several widely used enterprise services, including Microsoft Teams, SharePoint Online, OneDrive, Copilot Chat, Microsoft Purview, and Power BI. The incident primarily affected customers whose Microsoft 365 traffic was routed through the North America reg

Jul 24, 2026
Neowin

Microsoft 365 servers down as outage may have hit as Teams, Outlook, SharePoint, and more

Microsoft has confirmed that various M365 services have slowed down as they have been hit by an outage. The company is invest

Jul 23, 2026
BleepingComputer

Microsoft 365 outage affects Teams, SharePoint and other services

Microsoft Teams and several Microsoft 365 services are experiencing an ongoing outage, with users reporting problems accessing Teams, SharePoint, Excel and the Microsoft 365 Admin Center. [...]

Jul 23, 2026
Cybersecurity News

Hackers Abuse Compromised Outlook Accounts to Steal MFA-Protected Microsoft 365 Sessions

Attackers are quietly turning trusted Microsoft Outlook mailboxes into launchpads for stealing multi factor authenticated Microsoft 365 sessions, even when users think they are protected. Adversary in the middle phishing has evolved into a reliable tool for hijacking live cloud sessions that orga

Jul 22, 2026
scworld.com

HollowGraph malware uses Microsoft 365 calendar for command and control

HollowGraph, believed to be part of the Cavern command-and-control framework, targets organizations in Israel for espionage purposes.

Jul 20, 2026
Cybersecurity News

Hackers Are Turning Microsoft 365 Calendar Invites Into Secret Malware Command Channels

A stealthy new malware strain called HOLLOWGRAPH that hijacks Microsoft 365 calendars to secretly communicate with hackers, disguising malicious commands as ordinary calendar invites. HOLLOWGRAPH is a .NET-compiled malware component that abuses the Microsoft Graph API through a compromised Micros

Jul 20, 2026
Help Net Security

HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel

Microsoft 365 calendars have become a hiding place for espionage malware, with commands and stolen files stashed inside appointments dated to the year 2050, researchers from Group-IB discovered. Targeted campaign tied to Iranian espionage activity The malware, which Group-IB calls HOLLOWGRAPH, is

Jul 20, 2026
Cybersecurity News

Kratos PhaaS Attacking Microsoft 365 Users Across the US, Europe to Steal Credentials

Kratos is a phishing-as-a-service operation built to steal Microsoft 365 credentials. It is targeting organizations across the United States, Europe, and other regions by using believable document, invoice, and file-sharing lures that lead victims to fake login pages. The campaign puts a wide ran

Jul 16, 2026
GBHackers

Kratos PhaaS Targets Microsoft 365 Users With SharePoint Links and Cloudflare Anti-Bot Checks

Kratos, a subscription-based phishing-as-a-service platform, is targeting Microsoft 365 users in the United States, Europe, and other regions through campaigns designed to blend into ordinary document-sharing workflows. The operation abuses trusted services, including Microsoft SharePoint, OneDri

Jul 16, 2026
TechRepublicTech Media

Jalisco, OmegaLord Phishing Kits Target Microsoft 365 Accounts

New Jalisco and OmegaLord phishing kits target Microsoft 365 accounts by abusing device code flows, OAuth tokens, and MFA prompts to maintain access. The post Jalisco, OmegaLord Phishing Kits Target

Jul 15, 2026
Business Standard

LTM leads deployment of Microsoft 365 Copilot across the L&T Group

LTM announced that it is leading the deployment of Microsoft 365 Copilot across the L&T Group, driving one of India's largest enterprise AI workplace transformations.

Jul 15, 2026
The Stack

Runtime: Buildkite soars as the CI for AI; the Swiss don't miss Microsoft 365, and...

+ Luffy talks about AI for drones, Meta spends big on the bayou, and Apple's leaky offboarding process.

Jul 14, 2026
GBHackers

Exposed Server Unmasks Evilginx Operators Stealing Microsoft 365 Sessions and OAuth Tokens

A misconfigured server in Budapest exposed a live phishing operation built to bypass Microsoft 365 multi-factor authentication and retain access to compromised accounts. The server, hosted at 185.163.204[.]7185.163.204[.]7185.163.204[.]7, was running python3 -m http.server 8080 with directory lis

Jul 13, 2026
Cybersecurity News

Forg365 Phishing Platform Using AI to Attack Microsoft 365 Accounts

Forg365 is a phishing-as-a-service platform that targets Microsoft accounts, combining AI-powered phishing, session theft, and post-compromise mailbox access in a single operator panel The platform is reportedly distributed through Telegram, where criminals can access a 30-day trial, pay about pe

Jul 11, 2026
Neowin

OpenAI's GPT-5.6 becomes the preferred model in Microsoft 365 Copilot

Microsoft is pivoting back to its primary partner OpenAI with a day-one integration of GPT-5.6 model series to supercharge Word, Ex

Jul 10, 2026
GBHackers

Forg365 PhaaS Uses Telegram and AI Lures to Hijack Microsoft 365 Accounts

Forg365 is a commercial phishing-as-a-service (PhaaS) platform specifically targeting Microsoft 365 users. It employs methods such as device-code phishing, adversary-in-the-middle (AiTM) workflows, AI-assisted lure generation, and token persistence tools. The platform’s onboarding process t

Jul 10, 2026
Quartz

OpenAI's newest AI model is becoming the preferred engine for Microsoft 365 Copilot

The model, which only received broad U.S. regulatory clearance this week, is now rolling out across Word, Excel, PowerPoint, Chat, and Cowork

Jul 10, 2026
Newsbytes

GPT 5.6 is the 'preferred model' for Microsoft 365 Copilot

OpenAI has announced that its latest model, GPT 5.6, will be the "preferred model" for Microsoft 365 Copilot.

Jul 10, 2026
FirstPost

OpenAI names GPT 5.6 the ‘preferred model’ for Microsoft 365 Copilot amid partnership questions

Days after reports suggested Microsoft was leaning more heavily on its own AI models to reduce costs, OpenAI has reaffirmed the strength of its relationship with the tech giant. The company says its newly launched GPT 5.6 will become the preferred model powering Microsoft 365 Copilot across key prod

Jul 10, 2026
Nerds.xyz

GPT-5.6 lands in Microsoft 365 Copilot, and yes, Excel is supposed to get smarter

<img alt="GPT-5.6 lands in Microsoft 365 Copilot, and yes, Excel is supposed to get smarter" class="attachment-large size-large wp-post-image" height="471" src="https://nerds.xyz/w

Jul 9, 2026
Help Net Security

Extortion crew hijacks Microsoft 365 accounts via fake passkey setup

The Pink cyber extortion crew is tricking employees into giving them access to their Microsoft 365 accounts by faking Entra passkey enrollment requests. The attack The attack starts with a vishing call to an employee. The caller poses as IT and says it’s time to set up a passkey. Everything

Jul 9, 2026
PCMagTech Media

Microsoft 365 Apps Favoring Company's AI Models Over ChatGPT, Claude

It comes after Microsoft's CEO of AI, Mustafa Suleyman, said at Build that the plan is to 'reduce and ultimately eliminate' spend on external AI models.

Jul 8, 2026
Computer World

Microsoft 365 users fall victim to one-in-a-million password spray attack

Micro

Jul 3, 2026
Cybersecurity News

Microsoft 365 Phishing Panel Uses OAuth Device Code Flow to Capture Tokens and Persist Access

A newly uncovered phishing panel called ARToken is giving cybercriminals an easy way to steal Microsoft 365 login sessions without ever touching a password. The tool works by abusing a legitimate Microsoft sign in feature meant for devices without a keyboard or browser, tricking victims into appr

Jul 2, 2026
GBHackers

EvilTokens-Linked ARToken Panel Exposes 80+ APIs for Microsoft 365 Token Theft

A fully featured phishing-as-a-service (PhaaS) panel named “ARToken” that closely mirrors the EvilTokens infrastructure first profiled in early 2026, but with a broader and deeper post-compromise toolkit. ARToken’s React single-page application exposes more than 80 API endpoints enabling device-c

Jul 2, 2026
Computer World

Microsoft 365 Copilot: Office meets genAI and agents

Initial

Jul 2, 2026
GBHackers

LSHIY Password Spray Attack Hits Microsoft 365 Accounts With 81 Million Login Attempts

A large-scale password spray campaign linked to the infrastructure provider LSHIY LLC has targeted Microsoft 365 environments, resulting in over 81 million login attempts. This campaign has led to at least 78 confirmed account compromises across 64 organizations between June 12 and June 26, 2026.

Jul 2, 2026
Help Net Security

The ARToken phishing panel targets Microsoft 365 accounts

Accounts-payable staff at U.S. companies keep receiving invoice emails that look like they come from vendors they already work with. One landed at a life-sciences company in April 2026, addressed to the person who handles payments and written in the voice of a Wisconsin contractor’s billing

Jul 1, 2026

June 2026

Cybersecurity News

Microsoft 365 Apps RCE Vulnerability Exploited Using a Malicious Excel File

Microsoft has disclosed a critical remote code execution vulnerability in its Office ecosystem that can be exploited through a malicious Excel file. The vulnerability, tracked as CVE-2025-60727, affects multiple versions of Microsoft Office and underscores the continued risk posed by document-bas

Jun 29, 2026
TechRadarTech Media

'Plenty of AI tools claim to be built for finance; Microsoft 365 Copilot in Excel is proving it in practice': Microsoft is fuelling up Excel with lots more AI tools for finance workers

Microsoft has launched even more AI tools for Excel to maintain the software's position as a go-to finance tool.

Jun 29, 2026
GBHackers

Microsoft 365 Apps RCE Vulnerability Lets Attackers Execute Code via Malicious Excel Files

A newly disclosed remote code execution (RCE) vulnerability in Microsoft 365 Apps is raising concerns in enterprise environments. Attackers can exploit malicious Excel documents to execute arbitrary code on target systems. This vulnerability, tracked as CVE-2025-60727, arises from an out-of-bound

Jun 29, 2026
Help Net Security

Mirage2FA phishing kit uses HTML smuggling to steal Microsoft 365 credentials

Mirage2FA, a phishing kit that combines short-lived HTML smuggling with obfuscated JavaScript loaders to deliver fake Microsoft 365 login pages and steal credentials during MFA prompts, has been identified by researchers at Fortra. Fortra based its analysis on a suspicious HTML and JavaScript att

Jun 26, 2026
EconomicTimes - IndiaTimes

Italy regulator probes Microsoft over 'Microsoft 365' price hike

Italy's antitrust watchdog has launched a probe into Microsoft for alleged unfair practices concerning its Microsoft 365 subscription price increase. The regulator claims consumers weren't properly notified about the integration of AI tools like Copilot and Designer. Customers were automatically shi

Jun 26, 2026
ReutersMajor Publication

Italy regulator probes Microsoft over 'Microsoft 365' price hike

I

Jun 26, 2026
The Next WebTech Media

Italy opens an antitrust probe into Microsoft 365’s AI price rise

The regulator says customers were moved to a pricier Copilot-bundled plan unless they actively opted out, with too little information to choose. The m

Jun 26, 2026
Neowin

Microsoft adds new AI study and teaching tools for free to Microsoft 365 Education

Microsoft is adding a bunch of AI-powered tools for both teachers and students in its Microsoft 365 Education suite for no additional charg

Jun 24, 2026
Cybersecurity News

New Phishing Attack Abuses Outlook and Microsoft 365 Groups Features to Attack Users

Phishing attacks have grown more sophisticated, and attackers are no longer relying on clunky fake emails or obvious scam messages. A newly identified campaign shows how threat actors are turning everyday Microsoft 365 tools into weapons, hiding their attacks inside the very workflows employees t

Jun 23, 2026
Help Net Security

Phishing hides in routine Microsoft 365 workflows

Attackers are abusing Outlook Groups and Microsoft 365 collaboration features to make phishing campaigns appear routine, according to Fortra. “The technique shifts malicious intent away from a single phishing email into a trusted productivity workflow. A user may see what looks like a norma

Jun 23, 2026
DigitalTrends

Windows 11 is getting Copilot on Microsoft 365 Business accounts again, unless you’re in Europe

Microsoft made Copilot optional in April. It's force-installing it again in June, this time through Office updates, and EU users are the only ones being spared.

Jun 22, 2026
GBHackers

Microsoft 365 Sensitivity Labels Now Block AI-Powered Content Analysis in Office Apps

Microsoft has announced a significant update to its Microsoft 365 ecosystem to enhance data protection. This update will prevent AI-powered and connected content analysis in Office applications when sensitivity labels are applied. According to Microsoft, the company is expanding the enforcement o

Jun 22, 2026
CMOtech UK

ShareGate adds Entra ID migration for Microsoft 365

IT teams can now plan Microsoft 365 tenant moves around identity first, reducing clashes before mailboxes and workloads are migrated.

Jun 19, 2026
eSecurity Planet

SearchLeak Flaw Exposed Sensitive Data in Microsoft 365 Copilot

SearchLeak could have enabled one-click theft of sensitive Microsoft 365 Copilot data. The post SearchLeak Flaw Exposed Sensitive Data in Microsoft 365 Copilot appeared f

Jun 18, 2026
XDA Developers

I'm done with Microsoft 365 accounts, and I'm watching Nextcloud's new office suite

Nextcloud's new office suite is based on the best free solution out there, but it could be an even bigger threat to Microsoft's dominance.

Jun 18, 2026
testingcatalog.com

Microsoft launches Copilot Cowork globally for Microsoft 365

What's new? Microsoft announced Copilot Cowork, a cloud-hosted agent system that runs multi tool tasks; it has a usage based billing model and Adobe, Miro and Atlassian plugins;

Jun 18, 2026
WinBuzzer

How Microsoft Copilot Is Changing Everyday Workflows in Windows and Microsoft 365

Artificial intelligence has stoppe

Jun 17, 2026
TechRadarTech Media

Microsoft 365 Copilot can be turned into a one-click data theft tool — inbox, OneDrive, and SharePoint data all at risk, so patch now

Varonis found a way to chain three bugs into one exploit that can lead to data exfiltration.

Jun 16, 2026
Cybersecurity News

Microsoft 365 Device Code Phishing Campaign Bypasses Password Theft With Legitimate Login Flow

A new phishing campaign targeting Microsoft 365 users has been uncovered, and it takes a different approach than most attacks seen in the wild. Instead of trying to steal a victim’s password directly, this campaign tricks users into completing a real Microsoft authentication process that qu

Jun 16, 2026
GBHackers

Hackers Abuse Microsoft OAuth Device Code Flow to Take Over Microsoft 365 Accounts

An active campaign in which attackers are abusing Microsoft’s OAuth 2.0 Device Authorization Grant (device code) flow to take over Microsoft 365 accounts. Rather than capturing credentials with a fake login page, the threat actors persuade victims to complete a genuine Microsoft authentication pr

Jun 16, 2026
The Cyber Express

Critical SearchLeak Flaw in Microsoft 365 Copilot Exposed Sensitive Enterprise Data

<img alt="SearchLeak vulnerability" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" height="614" src="https://thecyberexpress.com/wp-content/uploads/SearchLeak-vulnerability.webp" title="Critical SearchLeak Flaw in Microsoft 365 Copilot Exposed Sensitive Enterprise Data 5" wid

Jun 16, 2026
scworld.com

SearchLeak vulnerability allows data theft from Microsoft 365 Copilot Enterprise

The SearchLeak vulnerability, identified as CVE-2026-42824, is a three-stage attack chain developed by Varonis researchers.

Jun 15, 2026
Neowin

Microsoft brings Planner Agent to all Microsoft 365 Copilot users

You can now create, manage, and get insights about Planner tasks with prompts inside Microsoft 365 Copilot. <a href="https://www.n

Jun 15, 2026
Livemint

What is Kali365? FBI warns Telegram-based phishing service targeting Microsoft 365 users

The platform, first detected in April 2026, is being actively distributed through Telegram channels and is designed to help even low-skilled attackers conduct sophisticated phishing campaigns.

Jun 15, 2026
The Hacker News

One-Click Microsoft 365 Copilot Flaw Could Have Let Attackers Steal Emails, Files, and MFA Codes

A single click on a trusted Microsoft link could have let an attacker pull emails, calendar details, and indexed files out of Microsoft 365 Copilot Enterprise Search. Researchers at Varonis Threat Labs chained three bugs into a one-click exfiltration path they call SearchLeak. Because the link poin

Jun 15, 2026
Cybersecurity News

Critical Microsoft 365 Copilot Vulnerability Allows Attackers to Steal Data in One Click

A critical vulnerability chain in Microsoft 365 Copilot Enterprise that let attackers steal sensitive corporate data, MFA codes, email contents, calendar details, and confidential files with nothing more than a single click on a link pointing to a legitimate Microsoft domain. Dubbed SearchLeak, u

Jun 15, 2026
BleepingComputer

New attack turned Microsoft 365 Copilot into 1-click data theft tool

A critical vulnerability chain dubbed SearchLeak in Microsoft 365 Copilot Enterprise could allow attackers to steal sensitive data from a target's mailbox, OneDrive, or SharePoint account through a specially crafted URL. [...]

Jun 15, 2026
The Next WebTech Media

NHS England rolls out Microsoft 365 Copilot to 505,000 staff after trial reports 43 minutes saved per day

NHS England is giving more than 505,000 clinicians and support staff access to Microsoft 365 Copilot in what will be the largest AI deployment in healthcare

Jun 14, 2026
Help Net Security

New Browser-in-the-Browser phishing uses fake login popups to steal Microsoft 365 credentials

A new Browser-in-the-Browser (BitB) phishing campaign is targeting Microsoft 365 users with fake login popups designed to closely mimic legitimate browser authentication windows, according to Palo Alto Networks Unit 42. The attack relies on a fake browser window embedded within a webpage. Victims

Jun 10, 2026
Cybersecurity News

New Browser-in-the-Browser Phishing Attack to Steal Microsoft 365 Logins

A new and sophisticated Browser-in-the-Browser phishing campaign has been discovered targeting Microsoft 365 users, using a fake login popup that is nearly impossible to tell apart from the real thing. The attack is so convincing that even tech-savvy users can fall for it without realizing their

Jun 9, 2026
GBHackers

New BitB Phishing Attack Targets Microsoft 365 Logins

A new Browser-in-the-Browser (BitB) phishing campaign is abusing fake OAuth login windows to steal Microsoft 365 credentials, and its design is polished enough to bypass casual visual checks. The attack uses a draggable popup that mimics a real browser dialog. However, it is embedded in the page

Jun 9, 2026
CMOtech UK

Inforcer launches Microsoft 365 threat response for MSPs

MSPs can now detect and contain Microsoft 365 breaches in one platform, as Inforcer adds incident response to its security suite.

Jun 9, 2026
Hackread

New Pink Extortion Group Targets Microsoft 365 Cloud Data Via Vishing Scams

Cybersecurity researchers are warning businesses about Pink Extortion Group, a threat actor that uses voice phishing to bypass multi-factor authentication and steal files from cloud environments.

Jun 6, 2026
Cybersecurity News

Microsoft 365 Service Degradation Bypassed Windows Driver Auto-Update Controls

Microsoft has resolved a Microsoft 365 service degradation issue that temporarily bypassed Windows driver auto-update controls, leading to unintended driver installations on managed devices. The issue affected Windows devices configured with policies designed to prevent automatic updates, particu

Jun 5, 2026
The Cyber Express

Pink Extortion Group Emerges Targeting Microsoft 365 Data

A newly i

Jun 4, 2026
TechRepublicTech Media

Microsoft 365 Android Apps Had a Token Flaw IT Teams Should Check Now

A debug flag left active in six Microsoft 365 Android apps allowed another installed app on the same device to request account tokens without user interaction. The post Microsoft 365 Android Apps Had a To

Jun 4, 2026
ZDNetTech Media

Is Microsoft 365 Premium worth it? What $20 a month gets you - and how it compares to ChatGPT Plus

Microsoft is offering a 50% discount to 365 subscribers who want more AI Copilot features. Here's what's included.

Jun 4, 2026
Cybersecurity News

Kali365 PhaaS Operation Expands Beyond Microsoft 365 to Target Okta and MAX Messenger

A new and fast-growing phishing operation is making waves in the cybersecurity world, and it is moving far beyond its original targets. Kali365, a phishing-as-a-service (PhaaS) platform first spotted in April 2026, was initially built to steal Microsoft 365 login tokens by tricking users into aut

Jun 4, 2026
eSecurity Planet

Barracuda Finds Malicious Microsoft 365 Logins Are Blending In

Barracuda finds that trusted Microsoft 365 logins can hide attacks. The post Barracuda Finds Malicious Microsoft 365 Logins Are Blending In appeared first on <a href="http

Jun 4, 2026
darkreading

Coding Gaffe Exposes Microsoft 365 Accounts to Widespread Takeover

A disabled security setting meant to protect authentication across Android versions of key apps like Word, PowerPoint, and Excel paved the way for attackers to steal logins and data.

Jun 3, 2026
wccftech.com

Microsoft Treats Apple Users As Second-Class Citizens, Stripping Office 2019 Of Any Utility While Windows And Microsoft 365 Customers Remain Unscathed

As someone who bought Microsoft's Office 2019 lifetime license around 7 years back, the imminent end of support for the software suite on Apple's platforms feels surreal, made all the more incredulous by the patently blasé attitude with which Microsoft is approaching this blatant forced obsolescence

Jun 3, 2026

Toolradar Research

See Microsoft 365 in context: The SaaS Press Index 2026

We analyzed 6,704 press mentions across 290 outlets to rank which SaaS tools win coverage. Find Microsoft 365's position relative to the 488 most-covered tools.

Read the report

Explore Microsoft 365

Press coverage is one signal. See the full picture.