Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Microsoft Alerts US Firms to Advanced Phishing Scheme

Microsoft Alerts US Firms to Advanced Phishing Scheme

Posted on May 5, 2026 By CWS

Microsoft has issued a warning to American organizations about a complex phishing scheme that employs a ‘code of conduct review’ angle to trick users into visiting a fraudulent website.

Widespread Targeting of US Organizations

Between April 14 and 16, Microsoft detected more than 35,000 phishing attempts. These malicious emails were aimed at users in approximately 13,000 organizations across 26 countries, with 92% of the targets located in the United States.

The healthcare, life sciences, financial services, professional services, and technology sectors were among the most affected. The phishing emails appeared to be internal communications, employing display names such as ‘Team Conduct Report’ and ‘Workforce Communications’. Subject lines included phrases like ‘Reminder: employer opened a non-compliance case log’.

Technical Breakdown of the Attack

Microsoft’s analysis revealed that the phishing emails were dispatched using a legitimate email delivery service, possibly from a cloud-hosted Windows virtual machine. The emails originated from multiple addresses linked to domains likely controlled by the attackers.

Recipients were instructed to open attachments labeled ‘Awareness Case Log File’ or ‘Disciplinary Action’. These documents contained a link titled ‘Review Case Materials’, which redirected users to a Cloudflare CAPTCHA page to evade automated security analysis.

Phishing Mechanism and Security Implications

After passing the CAPTCHA, victims were directed to a page requesting email address entry, followed by another CAPTCHA challenge. The final stage instructed users to sign into their Microsoft account, where adversary-in-the-middle (AitM) phishing techniques were employed.

This method intercepts authentication tokens in real-time, bypassing even multifactor authentication (MFA) systems that are not resistant to phishing. Microsoft has provided enterprises with mitigation strategies and threat-hunting resources to combat such attacks.

As phishing tactics grow more sophisticated, organizations must remain vigilant and employ robust security measures to protect against these evolving threats.

Security Week News Tags:AI attacks, AiTM, Authentication, CAPTCHA, cloud security, Cybersecurity, email security, Microsoft, Phishing, US organizations

Post navigation

Previous Post: Rising Cyber Threats Target Education Sector Globally
Next Post: Supply Chain Attack Targets DAEMON Tools Software

Related Posts

SBOM Pioneer Allan Friedman Joins NetRise to Advance Supply Chain Visibility SBOM Pioneer Allan Friedman Joins NetRise to Advance Supply Chain Visibility Security Week News
Mirai Botnets Exploiting Wazuh Security Platform Vulnerability  Mirai Botnets Exploiting Wazuh Security Platform Vulnerability  Security Week News
Palo Alto Networks Expands with Embrace Acquisition Palo Alto Networks Expands with Embrace Acquisition Security Week News
Cyberattack Foiled at Poland’s Nuclear Research Facility Cyberattack Foiled at Poland’s Nuclear Research Facility Security Week News
Socket Secures  Million, Reaches  Billion Valuation Socket Secures $60 Million, Reaches $1 Billion Valuation Security Week News
Citrix NetScaler Vulnerability Exploited Within Days Citrix NetScaler Vulnerability Exploited Within Days Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Telegram Briefly Removed from Apple App Store Due to Guidelines
  • Microsoft Awards $20 Million in Bug Bounties
  • New York Allocates $9 Million for Water System Cybersecurity
  • Android RAT Threat Poses as Emergency App
  • Critical VeloCloud Vulnerability Actively Exploited

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Telegram Briefly Removed from Apple App Store Due to Guidelines
  • Microsoft Awards $20 Million in Bug Bounties
  • New York Allocates $9 Million for Water System Cybersecurity
  • Android RAT Threat Poses as Emergency App
  • Critical VeloCloud Vulnerability Actively Exploited

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark