microsoft 365 news
2 stories
backdoorhigh
Antino Backdoor Lets China-Linked UAT-11587 Turn Microsoft 365 Into a C2 Channel
Cisco Talos researchers have identified a new Rust-based backdoor, dubbed Antino, which a China-linked threat actor known as UAT-11587 is using to conduct espionage against government and policy organizations in Asia. The backdoor uniquely leverages Microsoft 365 services, specifically Outlook and OneDrive, for its command-and-control (C2) communications, allowing its traffic to blend in with…
phishinghigh
Forg365 Phishing Platform Leverages AI for Microsoft 365 Account Theft
A new phishing-as-a-service (PhaaS) platform named Forg365 has emerged, specializing in the theft of Microsoft 365 accounts. The platform integrates adversary-in-the-middle (AiTM) and device code phishing techniques with AI-assisted lure generation, and provides a browser extension for persistent access to compromised accounts.