Office 365 Phishing Archives - Office 365 Reports Generate Office 365 reports with PowerShell and stay informed about M365 news, tips, how-to's, and security best practices for efficient Microsoft 365 management. Tue, 26 Feb 2019 09:47:07 +0000 en-US hourly 1 /wp-content/uploads/2024/01/cropped-favicon-32x32.png?v=1705577855 Office 365 Phishing Archives - Office 365 Reports 32 32 Director added you to a Project Team! – A new phishing attempt targeted on Office 365 users. https://o365reports.com/2019/02/26/director-added-you-to-a-project-team-a-new-hacking-attempt-targeted-on-office-365-users/?utm_source=rss&utm_medium=rss&utm_campaign=director-added-you-to-a-project-team-a-new-hacking-attempt-targeted-on-office-365-users https://o365reports.com/2019/02/26/director-added-you-to-a-project-team-a-new-hacking-attempt-targeted-on-office-365-users/#respond Tue, 26 Feb 2019 09:47:07 +0000 http://o365reports.com/?p=895 Hi folks! It’s good to see you again. Today, I got this email from our company Director that they have added me to the Project team! Ah, I’m on heavens 🙂 🙂 Wait! This is not from our Director; I don’t have a director with this email address: ms-oxprotp.mycompanydomain.apcprd421.prdexchangpeenz.net@sv120.wadax.ne.jp It’s…

The post Director added you to a Project Team! – A new phishing attempt targeted on Office 365 users. appeared first on Office 365 Reports.

]]>
Hi folks! It’s good to see you again.

Today, I got this email from our company Director that they have added me to the Project team! Ah, I’m on heavens 🙂 🙂

Wait!

This is not from our Director; I don’t have a director with this email address: ms-oxprotp.mycompanydomain.apcprd421.prdexchangpeenz.net@sv120.wadax.ne.jp

It’s neither from Microsoft’s Office 365 team.

Now, I recognize it is a fishy phishing trick by some prick. What does the link in the email do then? Let’s see.

It’s like this: https://happy-care.net/?d=dG9ueUBvdXJjb21wYW55ZG9tYWluLmNvbQ==

(I played a little and modified the URL to hide my email from future phishing attacks)

The base64 value directly converts to my email address and when I open, I see this.

dG9ueUBvdXJjb21wYW55ZG9tYWluLmNvbQ== is tony@ourcompanydomain.com in plain text.

Did you notice?

It has the Microsoft favicon, https, and also a very good looking Microsoft Office 365 login page. But…

The URL is not from Microsoft. The moment you enter your password, you are sharing your account with some anonymous user who can be you from now.

Conclusion:

Be careful folks, you may see a different email like this as well. Check the URLs twice after checking twice.

See you with a different security risk soon. I hope there are plenty nowadays.

Safety and Peace!

The post Director added you to a Project Team! – A new phishing attempt targeted on Office 365 users. appeared first on Office 365 Reports.

]]>
https://o365reports.com/2019/02/26/director-added-you-to-a-project-team-a-new-hacking-attempt-targeted-on-office-365-users/feed/ 0