UNK_SneakyStrike: A Massive Microsoft Entra ID Account Takeover Campaign
Manage episode 489676227 series 3669047
A large-scale account takeover (ATO) campaign, dubbed UNK_SneakyStrike, targeted over 80,000 Microsoft Entra ID accounts across approximately 100 cloud tenants, as reported by The Hacker News on June 12, 2025. The campaign, which peaked in January 2025 with 16,500 accounts targeted in a single day, exploits the open-source penetration testing tool TeamFiltration to conduct password-spraying attacks. These attacks, aimed at Microsoft 365 services like Outlook, Teams, and OneDrive, highlight the growing misuse of legitimate tools for malicious purposes, compromising hundreds of organizations worldwide.
Read this blog post: https://buzzmybiz.co/blog/unk_sneakystrike-a-massive-microsoft-entra-id-account-takeover-campaign
Buzz My Biz provides a unified cybersecurity platform ideal for business, education, healthcare, and local governments. Give us a call at (678) 389-9289 or schedule a meeting today .
14 episodes