The Hacker News·3 min read·hard

Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data

T
The Hacker News
Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data
AI Summary

Microsoft has identified two cyberattack campaigns where threat actors used generative AI to create convincing phishing emails and passkey-themed social engineering. These attacks targeted corporate finance departments to facilitate fraudulent ACH transfers.

Why it matters

The use of generative AI in phishing campaigns significantly increases the sophistication of financial fraud, posing a major risk to enterprise cybersecurity.

Dive DeeperCreate a free account to unlock

Microsoft has disclosed details of two campaigns in which threat actors are abusing third-party email delivery infrastructure to blast financial fraud scam messages and using passkey-themed social engineering to breach cloud environments.

The first campaign, per the tech giant, involved sending over a million scam emails between August 3 and 5, 2026, by masquerading as chief executive officers (CEOs) of various target companies, aiming to persuade accounts payable departments at those firms to initiate Automated Clearing House ( ACH ) transfers for a supposed ServiceNow annual subscription.

Evidence indicates that the operators behind the campaign have leveraged generative artificial intelligence (AI) to facilitate the creation of email templates and draft emails tailored to their recipients. The activity primarily singled out enterprise users in the U.S., spanning IT services, consumer goods, real estate, and discrete manufacturing sectors.

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →
technologybusiness

Get smarter about the news

Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.

Create free account

Already have an account? Sign in