Microsoft warns of global campaign stealing auth tokens from 35K users
Source: Security Affairs · Category: Threat Actor & Campaign
Microsoft disclosed phishing campaign hitting 35,000 users across 26 countries via fake code-of-conduct emails, stealing authentication tokens. Law firms are high-value targets for credential theft. Audit email security controls, educate staff on token-stealing phishing, and enforce MFA universally.