Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks
Fake IT calls target executives in Microsoft 365 data theft and extortion attacks.
Evidence dossier
Intelligence passport
Measured timeline
- Detected The first matching coverage entered the Archynetys cluster.
- Latest coverage observed Most recent article currently attached to this story cluster.
- Peak measured velocity The recorded velocity reached 2.
- Evidence threshold reached The story had enough independent coverage for an explanatory brief.
Source diversity sample: itsecurityguru.org · BleepingComputer · CloudSEK · thehackernews.com.
How this dossier is built: methodology · AI policy · corrections.
Velocity
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
What happened
- Velocity & Diffusion: Coverage exploded across 4 distinct news outlets with 4 published articles, achieving a live velocity of 2.
- Primary Driver: Fake IT calls target executives in Microsoft 365 data theft and extortion attacks.
- Source Integrity: Verified strictly against primary headline reporting under zero-hallucination protocols.
Phishing kits have been used to steal Microsoft 365 logins without requiring a password. The 'Knight Office' phishing kit, a new variant, has been identified.
According to CloudSEK, this kit is a part of the Evilginx2 phishing campaign. The scope of the attacks and the number of organizations affected are unclear.
The phishing kits used in these attacks are sophisticated and have been designed to evade detection.
Synthesized by Archynetys from the headlines below under a strict no-invention contract. ✓ fact-checked: unsupported claims removed (83% supported) Updated 1h ago.
The reporting (4)
- New ‘Knight Office’ Phishing Kit Steals Microsoft 365 Logins Without Touching a Password itsecurityguru.org · 15h ago
- BigBear Microsoft 365 phishing service bypassed MFA at 258 organizations BleepingComputer · 15h ago
- Tracking BigBear 2.0 Evilginx2 Phishing Campaign CloudSEK · 15h ago
- Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks thehackernews.com · 15h ago
Questions people are asking
What is the 'Knight Office' phishing kit?
The 'Knight Office' phishing kit is a new variant of a phishing kit used to steal Microsoft 365 logins without requiring a password.
How many organizations have been affected by the BigBear Microsoft 365 phishing service?
Coverage reports that 258 organizations have had their MFA bypassed by the BigBear service.
What is the Evilginx2 phishing campaign?
The Evilginx2 phishing campaign is a series of attacks that use sophisticated phishing kits to evade detection.
Topics
Related trends
Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication
MikroTik routers exposed to unauthenticated SSH hijacks, putting global networks at risk
Europe failing to deter Russia’s ‘hybrid’ war, warn defence officials
Europe’s defence chiefs now warn the bloc cannot deter Russia’s intensifying hybrid war.
Once popular for attacking AI, ASCII smuggling is embraced by spammers
Spammers have adopted ASCII smuggling to evade AI email security, sending millions of phishing emails.
Company Tied to Breach of 153M Driver's Licenses Hit With Multiple Lawsuits
6 news sources are covering this Business story right now — Archynetys is tracking how fast it spreads.
Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day
Billions of Chrome users faced urgent restart alerts as Google patched a zero‑day actively weaponised in the wild
FBI investigates alleged breach of IDs after hackers claim Hegseth driver’s license
FBI investigates alleged breach of IDs after hackers claim Hegseth driver’s license
Open prediction lab
Can you beat the machine?
Pick tomorrow's top trend, then compare your result with Archynetys's self-graded forecast.
📬 The daily trend digest
The world's top trends, once a day. No spam, one-click unsubscribe.