helpnetsecurity.com

Vishing Scams Steal Access Tokens to Microsoft 365 Accounts

Microsoft logoMicrosoft
Sig4.70Sen-4.00Env0.00Soc-4.60Gov-3.80

Arctic Wolf reports a wave of data theft and extortion targeting Microsoft 365 and other SaaS accounts via IT help-desk vishing. Attackers stole session tokens, routed sign-ins through residential proxies, and sent authentication links disguised as company-branded subdomains. Researchers identified hundreds of impersonation entries and multiple extortion brands, focused on US organizations in several sectors and executive staff.

Coverage (1)

ABOUT

What is Fimmer?

Most feeds treat all company headlines the same. An executive interview, an office closure, stock analysis, and a data breach can sit side by side with no sense of scale. Fimmer ranks coverage by what matters, so important events stand out and signals are prioritised over noise. We cluster related company news and score each story using a range of metrics, so you see the most crucial stories first.

SCORING

What do the scores mean?

Significance (0–10) measures the scale of the real-world impact. Sentiment and ESG (−10 to +10) indicate the tone of the coverage and whether the change relates to environmental, social, or governance factors. Together, these scores help distinguish meaningful developments from routine company news. More information about our scoring methodology can be found on our About page.

DISCOVERY

Explore more on Fimmer

Search more than 10,000 public companies, browse the company index, explore their scores, and read the coverage behind them, with our core features available to everyone for free.

For more advanced features, Pro gives you access to dynamic feeds, custom sorting, and more ways to track the companies that matter to you.

More with Pro