See every side of every news story
Published loading...Updated

Hackers Are Stealing Microsoft 365 Accounts by Abusing Link-Wrapping Services

AUG 4 – Attackers exploit trusted email link wrapping in services like Proofpoint to bypass filters and steal Microsoft 365 credentials in phishing campaigns ongoing for over two months, Cloudflare says.

Summary by Tech Radar
Proofpoint and Intermedia are being abused in phishing campaigns that aim to steal people's Microsoft 365 credentials.

7 Articles

Cybercriminals have come up with a new, sophisticated method to access Microsoft-365 access data: they have been misusing security functions to camouflage bad links - thus undermining well-protected e-mail systems themselves. (Continue reading)

Attackers abused technology companies' link wrapping services to disguise malicious links, leading victims to Microsoft 365 phishing pages to steal login credentials.

Cloudflare's Email Security team has uncovered a new phishing technique. Attackers are using compromised email accounts to disguise malicious links using legitimate link-wrapping services. These services, such as those used by Proofpoint or Intermedia, rewrite incoming links to trusted domains and automatically scan them—a protection mechanism that becomes a gateway here. The links appear deceptively real. The attackers shorten their links with …

Think freely.Subscribe and get full access to Ground NewsSubscriptions start at $9.99/yearSubscribe

Bias Distribution

  • 100% of the sources are Center
100% Center

Factuality 

To view factuality data please Upgrade to Premium

Ownership

To view ownership data please Upgrade to Vantage

HotHardware broke the news in on Monday, August 4, 2025.
Sources are mostly out of (0)

Similar News Topics