Hackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 Access

July 10, 2026 1 Min Read 0

Threat Intelligence Brief

Threat Risk: High

Victim: Organizations in food and beverage, technology, healthcare, automotive, construction, and aviation sectors

Incident: Threat actors are using vishing and a real-time phishing kit to trick Microsoft 365 users into enrolling attacker-controlled passkeys.

Impact: Unauthorized access to Microsoft 365 accounts leading to data extortion.

Attacker: O-UNC-066 (affiliated with The Com, including Scattered Spider and LAPSUS$)

Analysis: The key concern for Organizations in food and beverage, technology, healthcare, automotive, construction, and aviation sectors is the potential follow-on impact — Unauthorized access to Microsoft 365 accounts leading to data extortion. Treat this as a high-priority item and validate the source details, exposure scope, and required defensive actions. Reported attribution to O-UNC-066 (affiliated with The Com, including Scattered Spider and LAPSUS$) increases the need to validate exposure and related indicators.

Recommendations:

  • Apply vendor patches Review exposed systems Monitor for exploitation indicators

Source: thehackernews.com

View Original Source

Leave a Reply

Your email address will not be published. Required fields are marked *