UNC6671 Automates Microsoft 365 Data Theft After Hijacking Employee Sessions

UNC6671 is carrying out data theft campaigns that begin with a phone call. The group poses as an IT helpdesk, claiming an urgent security migration is necessary. A convincing call and a fake sign-in page can turn an ordinary session into an entry point. The calls create urgency before employees can verify the request independently. […]

This article has been indexed from Cyber Security News

Read the original article: