Post by Copeland Technology Solutions

321 followers

⚠️ Active phishing scam targeting Microsoft 365 users. The FBI recently flagged an active phishing scam targeting Microsoft 365 users across Teams, Outlook, and OneDrive. Here’s how it works. You get an email that looks like an ordinary document share. It includes a code and asks you to enter it. If you do, the attacker is into your account, without your password and past your multifactor authentication. The reason you are seeing more of these is simple. The tools to run them have gotten cheap and easy to use, so there are more attackers sending more convincing emails. Best practices to keep you ahead of it: ➡️ Do not enter codes you did not request. A real file will never ask you to type in a verification code to open it. ➡️ Report anything that looks off, whether that is a suspicious email, a login you do not recognize, or a device or session you did not set up. If you are unsure whether a message is real, you can always check with the sender by calling them directly.

Post contentPost contentPost content