
Loading

Loading
We use strictly necessary cookies to run this site, and analytics cookies to understand how it's used. See our Privacy Policy for details.

GhostCode is a newly identified phishing kit that turns a normal Microsoft 365 sign-in into an account takeover.
Summary
It does not need to steal a password. Instead, it persuades people to approve a login that gives criminals access to their work account. The campaign began with ordinary-looking messages submitted through business contact forms.
This summary is a partial excerpt — the source's own feed cuts off here. Read the full story at Cybersecuritynews for the rest.
KazaSec's take
Phishing and credential-based attacks succeed because they target people, not just infrastructure — technical controls like SPF, DKIM, and DMARC only ever close part of that gap. The rest comes down to whether a team can actually spot the fake, and whether a compromised credential can still be reused anywhere else.
Coverage details
We've archived 47 other articles touching the same topic (threats, cyber security news, cyber security) — see the full security news archive.
Related security advisories
Relevant from KazaSec
More coverage on this topic
We help organizations find and fix the gaps before they make headlines.