Summary
Microsoft 365 users are currently targeted by two major threat campaigns involving fake IT calls and phishing emails, utilizing tools like BigBear 2.0 and AiTM proxies to steal credentials and bypass MFA. Cybersecurity firms CloudSEK and Arctic Wolf have tracked thousands of compromised records and are urging the implementation of phishing-resistant MFA and conditional access policies to combat these sophisticated attacks.