Archynetys Live news trend intelligence
▲ Peaking Technology

Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks

Fake IT calls target executives in Microsoft 365 data theft and extortion attacks.

4sources
4articles
2velocity
+0%since first seen
1h agofirst detected

Evidence dossier

Intelligence passport

39/100 Publishable
4distinct sources shown
2velocity measurements
1language editions checked
Unsupported statements were removed before publicationbrief evidence status

Measured timeline

  1. Detected The first matching coverage entered the Archynetys cluster.
  2. Latest coverage observed Most recent article currently attached to this story cluster.
  3. Peak measured velocity The recorded velocity reached 2.
  4. Evidence threshold reached The story had enough independent coverage for an explanatory brief.

Source diversity sample: itsecurityguru.org · BleepingComputer · CloudSEK · thehackernews.com.

How this dossier is built: methodology · AI policy · corrections.

Velocity

How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →

What happened

⚡ Executive Intelligence Takeaways Corroborated across 4 independent newsrooms
  • Velocity & Diffusion: Coverage exploded across 4 distinct news outlets with 4 published articles, achieving a live velocity of 2.
  • Primary Driver: Fake IT calls target executives in Microsoft 365 data theft and extortion attacks.
  • Source Integrity: Verified strictly against primary headline reporting under zero-hallucination protocols.

Phishing kits have been used to steal Microsoft 365 logins without requiring a password. The 'Knight Office' phishing kit, a new variant, has been identified.

According to CloudSEK, this kit is a part of the Evilginx2 phishing campaign. The scope of the attacks and the number of organizations affected are unclear.

The phishing kits used in these attacks are sophisticated and have been designed to evade detection.

Synthesized by Archynetys from the headlines below under a strict no-invention contract. ✓ fact-checked: unsupported claims removed (83% supported) Updated 1h ago.

The reporting (4)

Questions people are asking

What is the 'Knight Office' phishing kit?

The 'Knight Office' phishing kit is a new variant of a phishing kit used to steal Microsoft 365 logins without requiring a password.

How many organizations have been affected by the BigBear Microsoft 365 phishing service?

Coverage reports that 258 organizations have had their MFA bypassed by the BigBear service.

What is the Evilginx2 phishing campaign?

The Evilginx2 phishing campaign is a series of attacks that use sophisticated phishing kits to evade detection.

Topics

Microsoft 365 Phishing Cybersecurity Evilginx2 MFA

Related trends

Open prediction lab

Can you beat the machine?

Pick tomorrow's top trend, then compare your result with Archynetys's self-graded forecast.

Make a prediction →