latest Post Click Subscribe!

Phishing Campaign: Victim - Office 365 Users

A Phishing campaign has been discovered that leverages brand names to track victims into giving up Microsoft Office 365 credentials.
Estimated read time: 1 min
Please wait 0 seconds...
Scroll Down and click on Go to Link for destination
Congrats! Link is Generated
Another Phishing Campaign: Victim Office 365 Users

A Phishing campaign has been discovered that leverages brand names to track victims into giving up Microsoft Office 365 credentials.

The scoop


MS Office 365 has become a lucrative target for threat actors due to its increasing adoption by the corporate sector. The latest attack comprised of the Hackers/Attackers exploiting an Adobe Campaign redirection mechanism, using a Samsung domain to redirect targets to an Office 365 themed phishing website.




NOTE: Nither Samsung nor Adobe were compromised in the sense of exploiting a vulnerability. Samsung’s Adobe Campaign server was left accessible to manage campaigns that were not part of the organization’s marketing campaigns.

How did the attackers bypass security?


  • By Utilizes an Oxford email server to send spam - bypassed sender reputation filters.


  • Links in the email indicate towards high-reputation domain owned by Samsung. 



  • Too many redirects lead to a completely obfuscated phishing page.



Footer Line is that Although the campaign was short-lived, the actors developed their redirection tactics to be independent of any particular domain and the Adobe Campaign servers. It is recommended that organisations use cloud and mail security measures to avert these types of attacks.

3 comments

  1. second ago
    Ooooo
  2. second ago
    Oooo bhai...
  3. second ago
    Yah
Please do not post any spam links
Cookie Consent
We serve cookies on this site to analyze traffic, remember your preferences, and optimize your experience.
Oops!
It seems there is something wrong with your internet connection. Please connect to the internet and start browsing again.
AdBlock Detected!
We have detected that you are using adblocking plugin in your browser.
The revenue we earn by the advertisements is used to manage this website, we request you to whitelist our website in your adblocking plugin.
Site is Blocked
Sorry! This site is not available in your country.