When you purchase through links on our site, we may earn an affiliate commission.Heres how it works.

Security researchers from Perception Point have spotted a new two-step phishing campaign aiming to steal peoplesMicrosoft365login credentials.

It includes compromisedemail accounts, compromised SharePoint accounts, and some convincing - but fake - purchase orders.

A fish hook is lying across a computer keyboard, representing a phishing attack on a computer system

The crooks would embed a malicious URL in this file leading to a fake Microsoft 365 login page.

You might also like