Security
Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data
The Hacker News·September 13, 2026·1 min read
Microsoft disclosed two campaigns where threat actors abuse third-party email infrastructure to send financial fraud scams and use passkey-themed social engineering to breach cloud environments. The first campaign sent over a million scam emails between August 3 and 5, 2026, masquerading as chief executive officers to hijack Microsoft cloud accounts and exfiltrate data.
Read at The Hacker NewsDaily crypto arcade
Read the news, then play it.
Chainshorts turns crypto headlines into a daily game. Catch up in 60 words, then jump into daily lucky draws for a shot at the pot.
