menu
techminis

A naukri.com initiative

google-web-stories
source image

Securityaffairs

1M

read

35

img
dot

Image Credit: Securityaffairs

A large botnet targets M365 accounts with password spraying attacks

  • A botnet of 130,000+ devices is targeting Microsoft 365 (M365) accounts through password-spraying attacks, bypassing multi-factor authentication.
  • The attackers exploit basic authentication, allowing them to steal credentials transmitted in plain form.
  • The password-spray attacks are recorded in Non-Interactive Sign-In logs, often overlooked by security teams, enabling attackers to conduct high-volume attempts undetected.
  • SecurityScorecard advises affected organizations to rotate credentials and reassess their authentication strategies to combat these ongoing botnet attacks.

Read Full Article

like

2 Likes

For uninterrupted reading, download the app