Jun 1 / Admin

New Scam Alert: Fraudsters are Using Real Microsoft Emails

Image Credit:  SecurityWeek
TechCrunch reported:   

For months, scammers have been taking advantage of a loophole that allows them to send spammy emails from an internal Microsoft email address typically used for sending legitimate account alerts.

Last week, I received several, similarly structured emails containing subject lines and web links to scammy sites from Microsoft across different email accounts. These crudely made emails were sent from msonlineservicesteam@microsoftonline.com, an email account that Microsoft uses to send important notifications to users, such as two-factor authentication codes and other critical alerts about their online account.

Find the original article here.
 
Key Takeaway:  Do not rely on links in email. Go to a previously bookmarked site or to a saved url from your password manager. 

Enroll in Training Sessions:  Last Thursday of Every Month is Training on Frauds and New Scam Alerts and How to Combat