Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data

Cybersecurity · September 14, 2026

Cybersecurity·thehackernews.com

Microsoft has detailed a campaign in which attackers linked to groups such as ShinyHunters and Helix used passkey and single sign-on themed social-engineering lures to trick employees into handing over access to corporate Microsoft 365 accounts. Once inside, the attackers exfiltrated data from the compromised cloud environments. The disclosure came alongside a separate report of a large-scale scam-email operation that abused third-party email delivery services to impersonate company executives.

// source: thehackernews.com ↗

Back to Blog