Phishing Campaign Exploited Proofpoint Email Protections for Spoofing

July 29, 2024 at 02:48PM Guardio Labs reported that threat actors exploited a misconfiguration in Proofpoint’s email protection service to conduct a large-scale phishing campaign. The vulnerability, named EchoSpoofing, allowed attackers to send millions of phishing emails per day and bypass security measures, spoofing well-known brands. Proofpoint has been working to address the issue and … Read more

ONNX phishing service targets Microsoft 365 accounts at financial firms

June 18, 2024 at 04:29PM ONNX Store, a phishing-as-a-service platform, targets Microsoft 365 and Office 365 accounts with PDF attachments containing QR codes. It bypasses 2FA, capturing login credentials and tokens, and provides a range of subscription tiers with customizable features. EclecticIQ recommends security measures to mitigate the threat’s impact. The platform poses a significant … Read more

Microsoft shares temp fix for Outlook encrypted email reply issues

May 16, 2024 at 01:31PM Microsoft has provided a temporary fix for a known issue preventing Microsoft 365 customers from replying to encrypted emails using the Outlook Desktop client. The issue affects customers on Current Channel Version 2402 and higher. A workaround suggests using new Outlook or Outlook Web Access temporarily. Additionally, reverting to the … Read more

Why Using Microsoft Copilot Could Amplify Existing Data Quality and Privacy Issues

April 30, 2024 at 08:22AM Gartner reports that 55% of organizations are using or testing Generative AI, with Microsoft 365’s Copilot being a popular choice due to its seamless integration and data protection. However, the US Congress has banned its usage, and Gartner advises caution due to potential data security flaws and AI amplifying existing … Read more

Microsoft: Outlook clients not syncing over Exchange ActiveSync

February 9, 2024 at 01:03PM Microsoft warned Outlook for Microsoft 365 users of potential connection issues with Exchange ActiveSync (EAS) after a January update. This affects synchronization of email, calendar, contacts, and tasks with mobile devices. A temporary fix includes reverting to an unaffected Office build or disabling updates. Microsoft is investigating and will provide … Read more