Close Menu
AI Security Weekly
  • Artificial Intelligence
  • Cybersecurity
  • Threats & Breaches
  • Privacy & Policy
  • Tools
  • Trends & Research
  • MSP MSSP
  • Blogs & Insights

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Crafting a Robust SOC Automation Plan

May 15, 2025

SoundCloud CEO Addresses Concerns About AI Policy

May 15, 2025

Cybersecurity Sector Secures $1.7 Billion for Advanced Protection Innovations

May 15, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
AI Security WeeklyAI Security Weekly
Subscribe
  • Artificial Intelligence
  • Cybersecurity
  • Threats & Breaches
  • Privacy & Policy
  • Tools
  • Trends & Research
  • MSP MSSP
  • Blogs & Insights
AI Security Weekly
Home » Russian Hackers Exploit Device Code Phishing to Seize Accounts
Tools

Russian Hackers Exploit Device Code Phishing to Seize Accounts

ContributorBy ContributorApril 26, 2025No Comments2 Mins Read
Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
Russian hackers exploit device code phishing to seize accounts
Share
Facebook Twitter LinkedIn Pinterest Telegram Email

Microsoft has highlighted a growing security threat identified as Storm-2372, linked to a series of cyberattacks targeting various sectors since August 2024.

These attacks have affected government bodies, NGOs, IT services, defense, telecommunications, healthcare, academia, and energy sectors across Europe, North America, Africa, and the Middle East.

The threat actor, believed to have ties to Russian interests, employs messaging platforms like WhatsApp, Signal, and Microsoft Teams to impersonate notable figures to gain the trust of their targets.

According to Microsoft’s Threat Intelligence, the attacks utilize a phishing method known as “device code phishing,” which tricks users into logging into productivity applications. The attackers capture the login tokens to access compromised accounts.

These authentication codes are leveraged to infiltrate target accounts, collecting sensitive information and maintaining access as long as the tokens are valid. Microsoft reports that attackers often send phishing emails disguised as Microsoft Teams meeting invites, prompting recipients to authenticate through a device code generated by the attacker, enabling them to hijack the authenticated session.

The process involves tricking victims into inputting a legitimate device code on a valid sign-in page, which provides the attackers access to authentication tokens, allowing them to breach the target’s accounts and data effortlessly.

To mitigate risks associated with these cyberattacks, organizations should restrict device code flow where feasible, implement multi-factor authentication resistant to phishing, and adhere to the principle of least privilege to enhance their security posture.

Accounts Code Device Exploit Hackers Phishing Russian Seize
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
contact
Contributor

Related Posts

Netflix Unveils Innovative Ad Tools Fueled by Data and AI

May 15, 2025

The Rise of AI: 6 Reasons It Will Revolutionize Business Reporting

May 12, 2025

DragonGC Unveils Advanced AI Tools to Enhance Corporate Governance and Compliance

May 12, 2025

Achieving a Six-Figure Tech Salary with ChatGPT Résumé Score Assistance

May 11, 2025

Innovative Tools Designed to Bridge Lung Cancer Screening Disparities

May 8, 2025

Relevance AI Secures $24 Million to Enhance AI Workforce Solutions

May 7, 2025

Comments are closed.

Top Reviews
We're Social
  • Facebook
  • Twitter
  • Instagram
  • LinkedIn
Editors Picks

Crafting a Robust SOC Automation Plan

May 15, 2025

SoundCloud CEO Addresses Concerns About AI Policy

May 15, 2025

Cybersecurity Sector Secures $1.7 Billion for Advanced Protection Innovations

May 15, 2025

Creating a Trust Layer for AI and Web3: Insights from Polyhedra

May 15, 2025

Subscribe to Updates

Subscribe to our newsletter and stay updated with the latest news and exclusive offers.

About Us
About Us

At AI Security Weekly, we are dedicated to delivering the latest news, insights, and analysis on artificial intelligence security. As AI technologies continue to evolve, so do the threats, vulnerabilities, and solutions that shape the cybersecurity landscape. Our mission is to keep security professionals, researchers, and tech enthusiasts informed about the rapidly changing world of AI-driven security risks and defenses.

Trends

Crafting a Robust SOC Automation Plan

May 15, 2025

Sophos Launches MSP Elevate to Drive Partner Success

May 15, 2025

ManageEngine Unveils AI Innovations for Enhanced PAM Solutions

May 11, 2025
Don't Miss

Crafting a Robust SOC Automation Plan

May 15, 2025

SoundCloud CEO Addresses Concerns About AI Policy

May 15, 2025

Cybersecurity Sector Secures $1.7 Billion for Advanced Protection Innovations

May 15, 2025
© 2025 AI Security Weekly. All Rights Reserved.
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.