
Microsoft 365 in the Media
231 mentions across press, blogs, and newsletters
August 2026
Hackers Bypass Microsoft 365 MFA and Hijack Finance Mailbox to Steal Payments
A single phishing email was enough to give attackers access to a finance employee’s Microsoft 365 account and redirect vendor payments. The incident shows how criminals can bypass multi-factor authentication without installing malware or breaking into a company device. The attackers used a target
Hackers Create Hidden Microsoft 365 Inbox Rules to Conceal Vendor Payment Fraud
Threat actors are increasingly abusing Microsoft 365 identity sessions rather than deploying malware, as shown in a cloud-only business email compromise (BEC). The attackers used an adversary-in-the-middle (AiTM) phishing kit to capture an authenticated Microsoft 365 session token, bypass multi-f
Hackers Let Microsoft 365 Users Complete MFA, Then Steal Logged-In Sessions
A sophisticated Phishing-as-a-Service (PhaaS) platform marketed as Mirage2FA is enabling threat actors to bypass multi-factor authentication (MFA) by allowing Microsoft 365 users to complete their regular login process before covertly stealing the authenticated session. Threat researchers at ANY.
Microsoft 365 Service Degradation Disrupts Users Across South America
Microsoft is responding to a regional outage that may leave users in South America unable to use multiple Microsoft 365 services. The company is tracking the disruption as issue MO1457636, a service degradation of the Microsoft 365 suite that began at 2:34 p.m. UTC on August 19, 2026 (8:04 p.m. I
Microsoft 365 Search Outage Disrupts SharePoint, OneDrive, and Outlook Users Worldwide
Microsoft is actively managing a service disruption that has left a subset of enterprise users unable to search for content across SharePoint Online, OneDrive, Outlook on the web, and Outlook desktop. The incident, tracked in administrative portals under reference MO1456424, was confirmed after u
New malware turns Microsoft 365 and Azure into its control center
<p class
Microsoft confirms outage affecting search in Microsoft 365 apps
Microsoft says some users are experiencing issues searching in Microsoft 365 apps, including Outlook on the web, Outlook desktop, SharePoint Online, and OneDrive. [...]
Microsoft unifies copilot and Microsoft 365 copilot into one app: Here’s what’s changing
Microsoft is rolling out a unified Copilot app that brings personal and productivity experiences together, while retiring features including Group Chat, Podcasts and Deep Search for consumers.
Microsoft is Unifying its Consumer Copilot App and Microsoft 365 Copilot into a Single App
Microsoft is preparing to unify its separate Consumer Copilot App and Microsoft 365 Copilot app into a single client that supports both personal and work accounts. The post <a href="https://www.thurrott.com/a-i/340382/microsoft-is-unifying-its-consumer-copilot-app-and-microsoft-365-copilot
Microsoft begins unified Copilot app rollout: Reveals major plan to merge Copilot and Microsoft 365 Copilot across all platforms, along with updated branding
We knew it was coming, and now it's official: Microsoft is beginning to rollout a new Copilot app that merges Copilot and Microsoft 365 Copilot under one experience.
Windows 10 users are getting locked out of new Microsoft 365 features in a bid to push for Windows 11
Will it convince people to upgrade?
S&P Global data integrated into Microsoft 365 Copilot
Microsoft has struck a deal to integrate S&P Global AI-ready data, insights and analytics into its 365 Copilot workflows and agentic experiences.
ConnectSecure helps MSPs automate Microsoft 365 security remediation
ConnectSecure has announced that Microsoft 365 Auto Remediation and AI-powered Training Assessments are now live on the ConnectSecure platform. The capabilities help managed service providers (MSPs) address supported M365 security findings, create and measure assessments, support client training
Payroll Pirates AiTM Phishing Hijacks Microsoft 365 Sessions and Targets Payroll Emails
Payroll Pirates are using phishing emails to seize Microsoft 365 sessions and search payroll-related mailboxes. The campaign turns a voicemail alert into a route for financial fraud, even when multi-factor authentication is enabled. The messages imitate an automated call notification and invite r
Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails
Cybersecurity researchers have called attention to an active "widespread email-driven phishing campaign" that employs adversary-in-the-middle (AitM) techniques to take control of Microsoft 365 accounts with an aim to identify key personnel involved in financial workflows and gather related email. "
UNC6671 Automates Microsoft 365 Data Theft After Hijacking Employee Sessions
UNC6671 is carrying out data theft campaigns that begin with a phone call. The group poses as an IT helpdesk, claiming an urgent security migration is necessary. A convincing call and a fake sign-in page can turn an ordinary session into an entry point. The calls create urgency before employees c
Greatness PhaaS Bypasses Email Security and MFA to Hijack Microsoft 365 Accounts
Greatness has emerged as a phishing-as-a-service platform designed to steal Microsoft 365 access at a time when many organizations assume multi-factor authentication will stop account takeovers. Rather than simply collecting a password, it can capture a valid sign-in token that lets an attacker e
Stolen Greatness Tokens Provide Microsoft 365 Access More Than Two Weeks After Phishing
Stolen Greatness authentication tokens are providing sustained, MFA‑approved access to victim Microsoft 365 tenants for more than two weeks after the initial phish, underscoring that token replay – not password theft – is driving the persistence in this AiTM PhaaS ecosystem. Originally documented
Cloudflare OS is an open-source AI alternative to Microsoft 365 and Google Workspace
<img alt="Cloudflare OS is an open-source AI alternative to Microsoft 365 and Google Workspace" class="attachment-large size-large wp-post-image" height="471" src="https://nerds.xyz/wp-content/uploads/2026/07/Cloudflar
Microsoft suddenly pulls new Microsoft 365 Copilot feature after rollout with no explanation
Microsoft unexpectedly pulled a newly released Copilot admin feature after rollout, leaving customers waiting to see what happens ne
Phishing service spoofs RingCentral to steal Microsoft 365 accounts
The Greatness phishing-as-a-service (PhaaS) platform has expanded from credential phishing to adversary-in-the-middle attacks and device-code phishing targeting Microsoft 365 accounts. [...]
Microsoft warns Russian hackers are hijacking hotel Wi-Fi to steal Microsoft 365 accounts
<img height="560" src="https://www.techspot.com/images2/news/ts3_thumbs/2026/08/2026-08-04-ts3_thumbs-28d.jpg" style="padding: 15px 0;" title="Microsoft warns Russian hackers are
Russian hackers abuse hotel Wi-Fi networks to steal Microsoft 365 credentials and deploy malware
Midnight Blizzard, the Russian threat actor tied to the country’s foreign intelligence service, has spent months targeting users of public Wi-Fi networks at places like hotels and conference centers, according to new findings from Microsoft Threat Intelligence. Overview of the CaptiveCrunch
ChocoShell Steals Microsoft 365 Tokens and Browser Sessions From Travelers
ChocoShell is a PowerShell-based infostealer used in Microsoft’s newly disclosed “CaptiveCrunch” campaign to steal Microsoft 365 tokens, browser sessions, and Wi‑Fi credentials from travelers connecting to compromised hospitality networks worldwide. The operation, dubbed “CaptiveCrunch,” poisons
July 2026
CMA investigates Microsoft for hiding Classic Microsoft 365 plans after 2025 AI price hikes
The CMA says Microsoft offered a limited-time Classic plan but didn't publicize it well enough. If found in breach, the CMA can fine M
Did Microsoft mislead Personal and Family customers? UK regulator probes higher Microsoft 365 subscription prices
Britain's antitrust regulator is investigating whether Microsoft misled Microsoft 365 subscribers over Copilot pricing, adding to growing global scrutiny of the company's software and AI practices.
Dismantled Kratos Phishing Kits Acting as Blueprint for Others to Attack Microsoft 365 Users
Kratos is a phishing service built to steal Microsoft 365 credentials at scale. It evolved from the Sneaky2FA kit and gave affiliates ready-made login pages, hosting options, and evasion features that made fraudulent sign-ins harder to detect. The operation relied on phishing emails that led targ
Dismantled Kratos Phishing Kit Becomes Blueprint for Attacks on Microsoft 365 Users
The takedown of the Kratos phishing-as-a-service (PhaaS) platform in July 2026 has done little to slow the broader threat landscape. As security researchers warn that its leaked techniques and infrastructure patterns are already being repurposed in ongoing campaigns targeting Microsoft 365 enviro
Microsoft 365 profile cards are getting a "major change", some IT admins should take action
A major Microsoft 365 change is coming soon, and organizations that ignore it could end up exposing more information than they intend
Microsoft blames massive Microsoft 365 outage on maintenance bug
Microsoft says a bug in its automated network maintenance request system caused Thursday's massive outage by mistakenly removing IP routes from more devices than intended, disrupting Azure and Microsoft 365 services. [...]
Hotel Wi-Fi DNS Poisoning Attacks Hijack Microsoft 365 Accounts Without Phishing
Adversaries are silently hijacking Microsoft 365 accounts by compromising hotel and conference-center Wi-Fi gateways and poisoning DNS no phishing emails, malicious attachments, or endpoint malware required. ReliaQuest assesses that the tradecraft closely mirrors prior APT28-linked router campaig
Microsoft 365 Services Outage Impacted Teams, Copilot, Purview and Other Services
A Microsoft 365 outage disrupted access to several widely used enterprise services, including Microsoft Teams, SharePoint Online, OneDrive, Copilot Chat, Microsoft Purview, and Power BI. The incident primarily affected customers whose Microsoft 365 traffic was routed through the North America reg
Microsoft 365 servers down as outage may have hit as Teams, Outlook, SharePoint, and more
Microsoft has confirmed that various M365 services have slowed down as they have been hit by an outage. The company is invest
Microsoft 365 outage affects Teams, SharePoint and other services
Microsoft Teams and several Microsoft 365 services are experiencing an ongoing outage, with users reporting problems accessing Teams, SharePoint, Excel and the Microsoft 365 Admin Center. [...]
Hackers Abuse Compromised Outlook Accounts to Steal MFA-Protected Microsoft 365 Sessions
Attackers are quietly turning trusted Microsoft Outlook mailboxes into launchpads for stealing multi factor authenticated Microsoft 365 sessions, even when users think they are protected. Adversary in the middle phishing has evolved into a reliable tool for hijacking live cloud sessions that orga
HollowGraph malware uses Microsoft 365 calendar for command and control
HollowGraph, believed to be part of the Cavern command-and-control framework, targets organizations in Israel for espionage purposes.
Hackers Are Turning Microsoft 365 Calendar Invites Into Secret Malware Command Channels
A stealthy new malware strain called HOLLOWGRAPH that hijacks Microsoft 365 calendars to secretly communicate with hackers, disguising malicious commands as ordinary calendar invites. HOLLOWGRAPH is a .NET-compiled malware component that abuses the Microsoft Graph API through a compromised Micros
HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel
Microsoft 365 calendars have become a hiding place for espionage malware, with commands and stolen files stashed inside appointments dated to the year 2050, researchers from Group-IB discovered. Targeted campaign tied to Iranian espionage activity The malware, which Group-IB calls HOLLOWGRAPH, is
Kratos PhaaS Attacking Microsoft 365 Users Across the US, Europe to Steal Credentials
Kratos is a phishing-as-a-service operation built to steal Microsoft 365 credentials. It is targeting organizations across the United States, Europe, and other regions by using believable document, invoice, and file-sharing lures that lead victims to fake login pages. The campaign puts a wide ran
Kratos PhaaS Targets Microsoft 365 Users With SharePoint Links and Cloudflare Anti-Bot Checks
Kratos, a subscription-based phishing-as-a-service platform, is targeting Microsoft 365 users in the United States, Europe, and other regions through campaigns designed to blend into ordinary document-sharing workflows. The operation abuses trusted services, including Microsoft SharePoint, OneDri
Jalisco, OmegaLord Phishing Kits Target Microsoft 365 Accounts
New Jalisco and OmegaLord phishing kits target Microsoft 365 accounts by abusing device code flows, OAuth tokens, and MFA prompts to maintain access. The post Jalisco, OmegaLord Phishing Kits Target
LTM leads deployment of Microsoft 365 Copilot across the L&T Group
LTM announced that it is leading the deployment of Microsoft 365 Copilot across the L&T Group, driving one of India's largest enterprise AI workplace transformations.
Runtime: Buildkite soars as the CI for AI; the Swiss don't miss Microsoft 365, and...
+ Luffy talks about AI for drones, Meta spends big on the bayou, and Apple's leaky offboarding process.
Exposed Server Unmasks Evilginx Operators Stealing Microsoft 365 Sessions and OAuth Tokens
A misconfigured server in Budapest exposed a live phishing operation built to bypass Microsoft 365 multi-factor authentication and retain access to compromised accounts. The server, hosted at 185.163.204[.]7185.163.204[.]7185.163.204[.]7, was running python3 -m http.server 8080 with directory lis
Forg365 Phishing Platform Using AI to Attack Microsoft 365 Accounts
Forg365 is a phishing-as-a-service platform that targets Microsoft accounts, combining AI-powered phishing, session theft, and post-compromise mailbox access in a single operator panel The platform is reportedly distributed through Telegram, where criminals can access a 30-day trial, pay about pe
OpenAI's GPT-5.6 becomes the preferred model in Microsoft 365 Copilot
Microsoft is pivoting back to its primary partner OpenAI with a day-one integration of GPT-5.6 model series to supercharge Word, Ex
Forg365 PhaaS Uses Telegram and AI Lures to Hijack Microsoft 365 Accounts
Forg365 is a commercial phishing-as-a-service (PhaaS) platform specifically targeting Microsoft 365 users. It employs methods such as device-code phishing, adversary-in-the-middle (AiTM) workflows, AI-assisted lure generation, and token persistence tools. The platform’s onboarding process t
OpenAI's newest AI model is becoming the preferred engine for Microsoft 365 Copilot
The model, which only received broad U.S. regulatory clearance this week, is now rolling out across Word, Excel, PowerPoint, Chat, and Cowork
GPT 5.6 is the 'preferred model' for Microsoft 365 Copilot
OpenAI has announced that its latest model, GPT 5.6, will be the "preferred model" for Microsoft 365 Copilot.
OpenAI names GPT 5.6 the ‘preferred model’ for Microsoft 365 Copilot amid partnership questions
Days after reports suggested Microsoft was leaning more heavily on its own AI models to reduce costs, OpenAI has reaffirmed the strength of its relationship with the tech giant. The company says its newly launched GPT 5.6 will become the preferred model powering Microsoft 365 Copilot across key prod
GPT-5.6 lands in Microsoft 365 Copilot, and yes, Excel is supposed to get smarter
<img alt="GPT-5.6 lands in Microsoft 365 Copilot, and yes, Excel is supposed to get smarter" class="attachment-large size-large wp-post-image" height="471" src="https://nerds.xyz/w
Extortion crew hijacks Microsoft 365 accounts via fake passkey setup
The Pink cyber extortion crew is tricking employees into giving them access to their Microsoft 365 accounts by faking Entra passkey enrollment requests. The attack The attack starts with a vishing call to an employee. The caller poses as IT and says it’s time to set up a passkey. Everything
Microsoft 365 Apps Favoring Company's AI Models Over ChatGPT, Claude
It comes after Microsoft's CEO of AI, Mustafa Suleyman, said at Build that the plan is to 'reduce and ultimately eliminate' spend on external AI models.
Microsoft 365 users fall victim to one-in-a-million password spray attack
Micro
Microsoft 365 Phishing Panel Uses OAuth Device Code Flow to Capture Tokens and Persist Access
A newly uncovered phishing panel called ARToken is giving cybercriminals an easy way to steal Microsoft 365 login sessions without ever touching a password. The tool works by abusing a legitimate Microsoft sign in feature meant for devices without a keyboard or browser, tricking victims into appr
EvilTokens-Linked ARToken Panel Exposes 80+ APIs for Microsoft 365 Token Theft
A fully featured phishing-as-a-service (PhaaS) panel named “ARToken” that closely mirrors the EvilTokens infrastructure first profiled in early 2026, but with a broader and deeper post-compromise toolkit. ARToken’s React single-page application exposes more than 80 API endpoints enabling device-c
Microsoft 365 Copilot: Office meets genAI and agents
Initial
LSHIY Password Spray Attack Hits Microsoft 365 Accounts With 81 Million Login Attempts
A large-scale password spray campaign linked to the infrastructure provider LSHIY LLC has targeted Microsoft 365 environments, resulting in over 81 million login attempts. This campaign has led to at least 78 confirmed account compromises across 64 organizations between June 12 and June 26, 2026.
The ARToken phishing panel targets Microsoft 365 accounts
Accounts-payable staff at U.S. companies keep receiving invoice emails that look like they come from vendors they already work with. One landed at a life-sciences company in April 2026, addressed to the person who handles payments and written in the voice of a Wisconsin contractor’s billing
June 2026
Microsoft 365 Apps RCE Vulnerability Exploited Using a Malicious Excel File
Microsoft has disclosed a critical remote code execution vulnerability in its Office ecosystem that can be exploited through a malicious Excel file. The vulnerability, tracked as CVE-2025-60727, affects multiple versions of Microsoft Office and underscores the continued risk posed by document-bas
'Plenty of AI tools claim to be built for finance; Microsoft 365 Copilot in Excel is proving it in practice': Microsoft is fuelling up Excel with lots more AI tools for finance workers
Microsoft has launched even more AI tools for Excel to maintain the software's position as a go-to finance tool.
Microsoft 365 Apps RCE Vulnerability Lets Attackers Execute Code via Malicious Excel Files
A newly disclosed remote code execution (RCE) vulnerability in Microsoft 365 Apps is raising concerns in enterprise environments. Attackers can exploit malicious Excel documents to execute arbitrary code on target systems. This vulnerability, tracked as CVE-2025-60727, arises from an out-of-bound
Mirage2FA phishing kit uses HTML smuggling to steal Microsoft 365 credentials
Mirage2FA, a phishing kit that combines short-lived HTML smuggling with obfuscated JavaScript loaders to deliver fake Microsoft 365 login pages and steal credentials during MFA prompts, has been identified by researchers at Fortra. Fortra based its analysis on a suspicious HTML and JavaScript att
Italy regulator probes Microsoft over 'Microsoft 365' price hike
Italy's antitrust watchdog has launched a probe into Microsoft for alleged unfair practices concerning its Microsoft 365 subscription price increase. The regulator claims consumers weren't properly notified about the integration of AI tools like Copilot and Designer. Customers were automatically shi
Italy regulator probes Microsoft over 'Microsoft 365' price hike
I
Italy opens an antitrust probe into Microsoft 365’s AI price rise
The regulator says customers were moved to a pricier Copilot-bundled plan unless they actively opted out, with too little information to choose. The m
Microsoft adds new AI study and teaching tools for free to Microsoft 365 Education
Microsoft is adding a bunch of AI-powered tools for both teachers and students in its Microsoft 365 Education suite for no additional charg
New Phishing Attack Abuses Outlook and Microsoft 365 Groups Features to Attack Users
Phishing attacks have grown more sophisticated, and attackers are no longer relying on clunky fake emails or obvious scam messages. A newly identified campaign shows how threat actors are turning everyday Microsoft 365 tools into weapons, hiding their attacks inside the very workflows employees t
Phishing hides in routine Microsoft 365 workflows
Attackers are abusing Outlook Groups and Microsoft 365 collaboration features to make phishing campaigns appear routine, according to Fortra. “The technique shifts malicious intent away from a single phishing email into a trusted productivity workflow. A user may see what looks like a norma
Windows 11 is getting Copilot on Microsoft 365 Business accounts again, unless you’re in Europe
Microsoft made Copilot optional in April. It's force-installing it again in June, this time through Office updates, and EU users are the only ones being spared.
Microsoft 365 Sensitivity Labels Now Block AI-Powered Content Analysis in Office Apps
Microsoft has announced a significant update to its Microsoft 365 ecosystem to enhance data protection. This update will prevent AI-powered and connected content analysis in Office applications when sensitivity labels are applied. According to Microsoft, the company is expanding the enforcement o
ShareGate adds Entra ID migration for Microsoft 365
IT teams can now plan Microsoft 365 tenant moves around identity first, reducing clashes before mailboxes and workloads are migrated.
SearchLeak Flaw Exposed Sensitive Data in Microsoft 365 Copilot
SearchLeak could have enabled one-click theft of sensitive Microsoft 365 Copilot data. The post SearchLeak Flaw Exposed Sensitive Data in Microsoft 365 Copilot appeared f
I'm done with Microsoft 365 accounts, and I'm watching Nextcloud's new office suite
Nextcloud's new office suite is based on the best free solution out there, but it could be an even bigger threat to Microsoft's dominance.
Microsoft launches Copilot Cowork globally for Microsoft 365
What's new? Microsoft announced Copilot Cowork, a cloud-hosted agent system that runs multi tool tasks; it has a usage based billing model and Adobe, Miro and Atlassian plugins;
How Microsoft Copilot Is Changing Everyday Workflows in Windows and Microsoft 365
Artificial intelligence has stoppe
Microsoft 365 Copilot can be turned into a one-click data theft tool — inbox, OneDrive, and SharePoint data all at risk, so patch now
Varonis found a way to chain three bugs into one exploit that can lead to data exfiltration.
Microsoft 365 Device Code Phishing Campaign Bypasses Password Theft With Legitimate Login Flow
A new phishing campaign targeting Microsoft 365 users has been uncovered, and it takes a different approach than most attacks seen in the wild. Instead of trying to steal a victim’s password directly, this campaign tricks users into completing a real Microsoft authentication process that qu
Hackers Abuse Microsoft OAuth Device Code Flow to Take Over Microsoft 365 Accounts
An active campaign in which attackers are abusing Microsoft’s OAuth 2.0 Device Authorization Grant (device code) flow to take over Microsoft 365 accounts. Rather than capturing credentials with a fake login page, the threat actors persuade victims to complete a genuine Microsoft authentication pr
Critical SearchLeak Flaw in Microsoft 365 Copilot Exposed Sensitive Enterprise Data
<img alt="SearchLeak vulnerability" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" height="614" src="https://thecyberexpress.com/wp-content/uploads/SearchLeak-vulnerability.webp" title="Critical SearchLeak Flaw in Microsoft 365 Copilot Exposed Sensitive Enterprise Data 5" wid
SearchLeak vulnerability allows data theft from Microsoft 365 Copilot Enterprise
The SearchLeak vulnerability, identified as CVE-2026-42824, is a three-stage attack chain developed by Varonis researchers.
Microsoft brings Planner Agent to all Microsoft 365 Copilot users
You can now create, manage, and get insights about Planner tasks with prompts inside Microsoft 365 Copilot. <a href="https://www.n
What is Kali365? FBI warns Telegram-based phishing service targeting Microsoft 365 users
The platform, first detected in April 2026, is being actively distributed through Telegram channels and is designed to help even low-skilled attackers conduct sophisticated phishing campaigns.
One-Click Microsoft 365 Copilot Flaw Could Have Let Attackers Steal Emails, Files, and MFA Codes
A single click on a trusted Microsoft link could have let an attacker pull emails, calendar details, and indexed files out of Microsoft 365 Copilot Enterprise Search. Researchers at Varonis Threat Labs chained three bugs into a one-click exfiltration path they call SearchLeak. Because the link poin
Critical Microsoft 365 Copilot Vulnerability Allows Attackers to Steal Data in One Click
A critical vulnerability chain in Microsoft 365 Copilot Enterprise that let attackers steal sensitive corporate data, MFA codes, email contents, calendar details, and confidential files with nothing more than a single click on a link pointing to a legitimate Microsoft domain. Dubbed SearchLeak, u
New attack turned Microsoft 365 Copilot into 1-click data theft tool
A critical vulnerability chain dubbed SearchLeak in Microsoft 365 Copilot Enterprise could allow attackers to steal sensitive data from a target's mailbox, OneDrive, or SharePoint account through a specially crafted URL. [...]
NHS England rolls out Microsoft 365 Copilot to 505,000 staff after trial reports 43 minutes saved per day
NHS England is giving more than 505,000 clinicians and support staff access to Microsoft 365 Copilot in what will be the largest AI deployment in healthcare
New Browser-in-the-Browser phishing uses fake login popups to steal Microsoft 365 credentials
A new Browser-in-the-Browser (BitB) phishing campaign is targeting Microsoft 365 users with fake login popups designed to closely mimic legitimate browser authentication windows, according to Palo Alto Networks Unit 42. The attack relies on a fake browser window embedded within a webpage. Victims
New Browser-in-the-Browser Phishing Attack to Steal Microsoft 365 Logins
A new and sophisticated Browser-in-the-Browser phishing campaign has been discovered targeting Microsoft 365 users, using a fake login popup that is nearly impossible to tell apart from the real thing. The attack is so convincing that even tech-savvy users can fall for it without realizing their
New BitB Phishing Attack Targets Microsoft 365 Logins
A new Browser-in-the-Browser (BitB) phishing campaign is abusing fake OAuth login windows to steal Microsoft 365 credentials, and its design is polished enough to bypass casual visual checks. The attack uses a draggable popup that mimics a real browser dialog. However, it is embedded in the page
Inforcer launches Microsoft 365 threat response for MSPs
MSPs can now detect and contain Microsoft 365 breaches in one platform, as Inforcer adds incident response to its security suite.
New Pink Extortion Group Targets Microsoft 365 Cloud Data Via Vishing Scams
Cybersecurity researchers are warning businesses about Pink Extortion Group, a threat actor that uses voice phishing to bypass multi-factor authentication and steal files from cloud environments.
Microsoft 365 Service Degradation Bypassed Windows Driver Auto-Update Controls
Microsoft has resolved a Microsoft 365 service degradation issue that temporarily bypassed Windows driver auto-update controls, leading to unintended driver installations on managed devices. The issue affected Windows devices configured with policies designed to prevent automatic updates, particu
Pink Extortion Group Emerges Targeting Microsoft 365 Data
A newly i
Microsoft 365 Android Apps Had a Token Flaw IT Teams Should Check Now
A debug flag left active in six Microsoft 365 Android apps allowed another installed app on the same device to request account tokens without user interaction. The post Microsoft 365 Android Apps Had a To
Is Microsoft 365 Premium worth it? What $20 a month gets you - and how it compares to ChatGPT Plus
Microsoft is offering a 50% discount to 365 subscribers who want more AI Copilot features. Here's what's included.
Kali365 PhaaS Operation Expands Beyond Microsoft 365 to Target Okta and MAX Messenger
A new and fast-growing phishing operation is making waves in the cybersecurity world, and it is moving far beyond its original targets. Kali365, a phishing-as-a-service (PhaaS) platform first spotted in April 2026, was initially built to steal Microsoft 365 login tokens by tricking users into aut
Barracuda Finds Malicious Microsoft 365 Logins Are Blending In
Barracuda finds that trusted Microsoft 365 logins can hide attacks. The post Barracuda Finds Malicious Microsoft 365 Logins Are Blending In appeared first on <a href="http
Coding Gaffe Exposes Microsoft 365 Accounts to Widespread Takeover
A disabled security setting meant to protect authentication across Android versions of key apps like Word, PowerPoint, and Excel paved the way for attackers to steal logins and data.
Microsoft Treats Apple Users As Second-Class Citizens, Stripping Office 2019 Of Any Utility While Windows And Microsoft 365 Customers Remain Unscathed
As someone who bought Microsoft's Office 2019 lifetime license around 7 years back, the imminent end of support for the software suite on Apple's platforms feels surreal, made all the more incredulous by the patently blasé attitude with which Microsoft is approaching this blatant forced obsolescence
Toolradar Research
See Microsoft 365 in context: The SaaS Press Index 2026
We analyzed 6,704 press mentions across 290 outlets to rank which SaaS tools win coverage. Find Microsoft 365's position relative to the 488 most-covered tools.
Read the reportExplore Microsoft 365
Press coverage is one signal. See the full picture.