Cloud in the crosshairs
How cyber criminals exploit file-sharing, identity, and supply chain vulnerabilities in Microsoft 365
The way we work has dramatically changed. The World Wide Web, social media, and newer technology like cloud computing allow teams to collaborate and get more work. Products such as Microsoft Office 365 provide tools that facilitate this new way of working.
They transform businesses into productive powerhouses.
Unfortunately, these are popular targets for cyber criminals who want to exploit unsuspecting organisations. This report explores five people-centric attacks that attackers use to compromise target companies.
These attacks include:
- Business email compromise
- Telephone-oriented attack delivery
- Weaponized file sharing
- Account takeover
- Compromised supplier accounts
Download now
Provided by Proofpoint
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
ITPro is a global business technology website providing the latest news, analysis, and business insight for IT decision-makers. Whether it's cyber security, cloud computing, IT infrastructure, or business strategy, we aim to equip leaders with the data they need to make informed IT investments.
For regular updates delivered to your inbox and social feeds, be sure to sign up to our daily newsletter and follow on us LinkedIn and Twitter.
-
What is Microsoft Maia?Explainer Microsoft's in-house chip is planned to a core aspect of Microsoft Copilot and future Azure AI offerings
-
If Satya Nadella wants us to take AI seriously, let’s forget about mass adoption and start with a return on investment for those already using itOpinion If Satya Nadella wants us to take AI seriously, let's start with ROI for businesses
-
Microsoft warns of rising AitM phishing attacks on energy sectorNews The campaign abused SharePoint file sharing services to deliver phishing payloads and altered inbox rules to maintain persistence
-
90% of companies are woefully unprepared for quantum security threats – analysts say they need to get a move onNews Quantum security threats are coming, but a Bain & Company survey shows systems aren't yet in place to prevent widespread chaos
-
LastPass issues alert as customers targeted in new phishing campaignNews LastPass has urged customers to be on the alert for phishing emails amidst an ongoing scam campaign that encourages users to backup vaults.
-
NCSC names and shames pro-Russia hacktivist group amid escalating DDoS attacks on UK public servicesNews Russia-linked hacktivists are increasingly trying to cause chaos for UK organizations
-
An AWS CodeBuild vulnerability could’ve caused supply chain chaos – luckily a fix was applied before disaster struckNews A single misconfiguration could have allowed attackers to inject malicious code to launch a platform-wide compromise
-
From Chaos to Clarity: Experience Data Pipeline Resilience with Clumio In-Place Recoverywhitepaper
-
From Mishaps to Meltdowns: Protecting and Recovering Active Directory and Entra IDwhitepaper
-
There’s a dangerous new ransomware variant on the block – and cyber experts warn it’s flying under the radarNews The new DeadLock ransomware family is taking off in the wild, researchers warn
