Cloud in the crosshairs
How cyber criminals exploit file-sharing, identity, and supply chain vulnerabilities in Microsoft 365
The way we work has dramatically changed. The World Wide Web, social media, and newer technology like cloud computing allow teams to collaborate and get more work. Products such as Microsoft Office 365 provide tools that facilitate this new way of working.
They transform businesses into productive powerhouses.
Unfortunately, these are popular targets for cyber criminals who want to exploit unsuspecting organisations. This report explores five people-centric attacks that attackers use to compromise target companies.
These attacks include:
- Business email compromise
- Telephone-oriented attack delivery
- Weaponized file sharing
- Account takeover
- Compromised supplier accounts
Download now
Provided by Proofpoint
Sign up today and you will receive a free copy of our Future Focus 2026 report - the leading resource for IT decision-maker insight on priorities and investment areas in AI, security and more.
ITPro is a global business technology website providing the latest news, analysis, and business insight for IT decision-makers. Whether it's cyber security, cloud computing, IT infrastructure, or business strategy, we aim to equip leaders with the data they need to make informed IT investments.
For regular updates delivered to your inbox and social feeds, be sure to sign up to our daily newsletter and follow on us LinkedIn and Twitter.
-
SANS 2025 State of ICS/OT Security Reportwhitepaper
-
What Is an OT Security Platform?whitepaper Download Now
-
Hackers are turning up at law firms to gain physical access to machinesNews The FBI is warning companies to look out for fake IT staff
-
UK wants an AI-powered anti-hacking systemNews GCHQ is building a national cyber defence capability powered by AI – though it may take five years
-
New ransomware threat group, The Gentlemen, has become one of the most active ransomware operators, accounting for 10% of all attacksNews NTT researchers warn that the RaaS group is leveraging SystemBC malware to establish covert tunnelling, evade detection, and support rapid lateral movement across enterprise environments
-
GitHub internal repositories exfiltrated via malicious VS Code extensionNews The breach has been claimed by the TeamPCP hacking group, which said it is offering the data for sale
-
$600bn lost every year to downtime as organizations battle hidden costsNews Disclosure, stock prices, ransoms and fines add up to hundreds of billions as unplanned downtime for large firms shoots up 50% in just two years

