lorenzofb ,
@lorenzofb@infosec.exchange avatar

NEW: An unpatched bug allows anyone to spoof any Microsoft corporate email address, giving malicious hackers a better chance to send credible and harder to spot phishing emails.

Researcher demonstrated to us the bug, sending an email that looked like it was from Microsoft's account security team. The bug only works if target uses an Outlook account.

https://techcrunch.com/2024/06/18/security-bug-allows-anyone-to-spoof-microsoft-employee-emails/

bontchev ,
@bontchev@infosec.exchange avatar

@lorenzofb I'd trust an e-mail coming from a Nigerian prince more than an e-mail coming from a Microsoft employee...

verbrecher ,
@verbrecher@mastodon.social avatar

@bontchev @lorenzofb , 😀😀

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • test
  • worldmews
  • mews
  • All magazines