{"id":30027,"date":"2026-06-10T10:51:38","date_gmt":"2026-06-10T08:51:38","guid":{"rendered":"https:\/\/perseus.de\/new-phishing-scam-bypasses-mfa-why-microsoft-365-users-should-be-particularly-attentive-now\/"},"modified":"2026-08-10T10:31:38","modified_gmt":"2026-08-10T08:31:38","slug":"new-phishing-scam-bypasses-mfa-why-microsoft-365-users-should-be-particularly-attentive-now","status":"publish","type":"post","link":"https:\/\/perseus.de\/en\/new-phishing-scam-bypasses-mfa-why-microsoft-365-users-should-be-particularly-attentive-now\/","title":{"rendered":"New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"30027\" class=\"elementor elementor-30027 elementor-28537\" data-elementor-post-type=\"post\">\n\t\t\t\t<div class=\"elementor-element elementor-element-dcf4ec4 e-flex e-con-boxed e-con e-parent\" data-id=\"dcf4ec4\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-e1db58c elementor-widget elementor-widget-image\" data-id=\"e1db58c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"image.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<img fetchpriority=\"high\" decoding=\"async\" width=\"800\" height=\"200\" src=\"https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN-1024x256.png\" class=\"attachment-large size-large wp-image-30037\" alt=\"In the event of a current attack pattern or a security vulnerability, Perseus sends out warning emails containing specific countermeasures.\" srcset=\"https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN-1024x256.png 1024w, https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN-300x75.png 300w, https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN-768x192.png 768w, https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN.png 1200w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/>\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-1258a43 e-flex e-con-boxed e-con e-parent\" data-id=\"1258a43\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t<div class=\"elementor-element elementor-element-2de4e88 e-con-full e-flex e-con e-child\" data-id=\"2de4e88\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-4982c80 elementor-widget elementor-widget-text-editor\" data-id=\"4982c80\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<h6>09.06.2026<\/h6>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-8348bc5 elementor-widget elementor-widget-heading\" data-id=\"8348bc5\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now  \n\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-eb03842 e-con-full e-flex e-con e-child\" data-id=\"eb03842\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-91d0988 elementor-widget elementor-widget-text-editor\" data-id=\"91d0988\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p> <\/p><p><span style=\"font-weight: 400\">Multi-factor authentication (MFA) has been considered one of the most effective protection measures against account takeovers for years. Many organizations rely on an additional security feature \u2014 such as an authenticator app or SMS \u2014 to prevent threat actors from accessing corporate accounts. <\/span><\/p><p><span style=\"font-weight: 400\">But cybercriminals are constantly evolving their methods. With Kali365, security researchers and authorities are currently observing an attack method that shows that even proven protection mechanisms are not always sufficient. Companies that use Microsoft 365 in particular should follow developments closely and review their security measures.  <\/span><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-ceb0f40 e-flex e-con-boxed e-con e-parent\" data-id=\"ceb0f40\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-ffbdc12 elementor-widget-divider--view-line elementor-widget elementor-widget-divider\" data-id=\"ffbdc12\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"divider.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-divider\">\n\t\t\t<span class=\"elementor-divider-separator\">\n\t\t\t\t\t\t<\/span>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-02dd0e9 e-flex e-con-boxed e-con e-parent\" data-id=\"02dd0e9\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t<div class=\"elementor-element elementor-element-16d621d e-con-full e-flex e-con e-child\" data-id=\"16d621d\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-89904c7 elementor-widget elementor-widget-text-editor\" data-id=\"89904c7\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><b>What is Kali365?<\/b><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-fae461d e-con-full e-flex e-con e-child\" data-id=\"fae461d\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-0f04793 elementor-widget elementor-widget-text-editor\" data-id=\"0f04793\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><span style=\"font-weight: 400\">Kali365 is a so-called phishing-as-a-service platform. Put simply, it is a ready-made toolbox that cybercriminals can use to carry out deceptively real attacks on Microsoft 365 users. <\/span><\/p>\n<p><span style=\"font-weight: 400\">While classic phishing campaigns aim to steal usernames and passwords, Kali365 takes a different approach. The attackers exploit legitimate login processes from Microsoft and try to obtain access tokens. These tokens serve as digital access authorization and enable access to various Microsoft 365 services.  <\/span><\/p>\n<p><span style=\"font-weight: 400\">The key difference is that even if multi-factor authentication has been successfully performed, attackers may still be able to access the account with a captured access token.<\/span><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-54c68ef e-flex e-con-boxed e-con e-parent\" data-id=\"54c68ef\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-96849ac elementor-widget-divider--view-line elementor-widget elementor-widget-divider\" data-id=\"96849ac\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"divider.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-divider\">\n\t\t\t<span class=\"elementor-divider-separator\">\n\t\t\t\t\t\t<\/span>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-174b215 e-flex e-con-boxed e-con e-parent\" data-id=\"174b215\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t<div class=\"elementor-element elementor-element-e560a6b e-con-full e-flex e-con e-child\" data-id=\"e560a6b\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-013b67e elementor-widget elementor-widget-text-editor\" data-id=\"013b67e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><b>Why is this attack method particularly dangerous?  <\/b><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-a72ed48 e-con-full e-flex e-con e-child\" data-id=\"a72ed48\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-db8754f elementor-widget elementor-widget-text-editor\" data-id=\"db8754f\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><span style=\"font-weight: 400\">Many employees have learned to watch out for suspicious links or fake login pages. However, Kali365 partially uses genuine Microsoft services and legitimate login processes. This makes the attacks appear much more credible than conventional phishing attempts.  <\/span><\/p>\n<p><span style=\"font-weight: 400\">In addition, such phishing-as-a-service offers significantly reduce the technical hurdle for cybercriminals. Threat actors do not have to develop the necessary tools themselves, but can fall back on platforms that have already been prepared. <\/span><\/p>\n<p><span style=\"font-weight: 400\">As a result, the number and quality of such attacks is likely to continue to increase.<\/span><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-54465d1 e-flex e-con-boxed e-con e-parent\" data-id=\"54465d1\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-d02be9e elementor-widget-divider--view-line elementor-widget elementor-widget-divider\" data-id=\"d02be9e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"divider.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-divider\">\n\t\t\t<span class=\"elementor-divider-separator\">\n\t\t\t\t\t\t<\/span>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-d3f9227 e-flex e-con-boxed e-con e-parent\" data-id=\"d3f9227\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t<div class=\"elementor-element elementor-element-6059711 e-con-full e-flex e-con e-child\" data-id=\"6059711\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-26eea72 elementor-widget elementor-widget-text-editor\" data-id=\"26eea72\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><b>How does a typical Kali 365 attack work?<\/b><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-724b6c6 e-con-full e-flex e-con e-child\" data-id=\"724b6c6\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-f0c2fb4 elementor-widget elementor-widget-text-editor\" data-id=\"f0c2fb4\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><span style=\"font-weight: 400\">A Kali365 attack usually begins with a phishing email, such as an alleged document release or Teams notification. The user is prompted to enter a device code or confirm a login. <\/span><\/p><p><span style=\"font-weight: 400\">The special feature: The registration takes place via a real Microsoft website. The user logs in regularly and confirms the multi-factor authentication as usual. In the background, however, the attacker has already started a so-called device code flow.  <\/span><\/p><p><span style=\"font-weight: 400\">With the confirmation, the user unintentionally authorizes one of the attackers&#8217; devices. Microsoft then issues valid access permissions, which are transmitted directly to the attacker. This can then access Microsoft 365 services such as Outlook, Teams, OneDrive or SharePoint \u2013 without knowing the user&#8217;s password.  <\/span><\/p><p><span style=\"font-weight: 400\">This is exactly what makes Kali365 so dangerous: The attack abuses a legitimate Microsoft login process and can thus bypass even proven protective measures such as multi-factor authentication.<\/span><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-9e25b00 e-flex e-con-boxed e-con e-parent\" data-id=\"9e25b00\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-67b2d4e elementor-widget-divider--view-line elementor-widget elementor-widget-divider\" data-id=\"67b2d4e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"divider.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-divider\">\n\t\t\t<span class=\"elementor-divider-separator\">\n\t\t\t\t\t\t<\/span>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-c28550e e-flex e-con-boxed e-con e-parent\" data-id=\"c28550e\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t<div class=\"elementor-element elementor-element-b5ac00b e-con-full e-flex e-con e-child\" data-id=\"b5ac00b\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-4467aca elementor-widget elementor-widget-text-editor\" data-id=\"4467aca\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><b>Which systems are affected?  <\/b><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-990ca5f e-con-full e-flex e-con e-child\" data-id=\"990ca5f\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-56e453f elementor-widget elementor-widget-text-editor\" data-id=\"56e453f\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><span style=\"font-weight: 400\">Basically, all organizations that use Microsoft 365 are affected. The focus is particularly on: <\/span><\/p><ul><li><span style=\"font-weight: 400\">Outlook<\/span><\/li><li><span style=\"font-weight: 400\">Exchange Online<\/span><\/li><li><span style=\"font-weight: 400\">Teams<\/span><\/li><li><span style=\"font-weight: 400\">OneDrive<\/span><\/li><li><span style=\"font-weight: 400\">SharePoint<\/span><\/li><\/ul><p> <\/p><p>If an account is compromised, threat actors can access emails, files, and internal communication data. In addition, compromised accounts are often used to carry out further phishing attacks within the company or against business partners. <\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-a2790c7 e-flex e-con-boxed e-con e-parent\" data-id=\"a2790c7\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-d4feb2c elementor-widget-divider--view-line elementor-widget elementor-widget-divider\" data-id=\"d4feb2c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"divider.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-divider\">\n\t\t\t<span class=\"elementor-divider-separator\">\n\t\t\t\t\t\t<\/span>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-7faf510 e-flex e-con-boxed e-con e-parent\" data-id=\"7faf510\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t<div class=\"elementor-element elementor-element-9a087a2 e-con-full e-flex e-con e-child\" data-id=\"9a087a2\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-4a4eba5 elementor-widget elementor-widget-text-editor\" data-id=\"4a4eba5\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><b>How can such attacks be recognised?  <\/b><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-f63aea7 e-con-full e-flex e-con e-child\" data-id=\"f63aea7\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-e249ee4 elementor-widget elementor-widget-text-editor\" data-id=\"e249ee4\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><span style=\"font-weight: 400\">There are a few red flags that businesses and users should be aware of. This includes unexpected requests to sign in to Microsoft 365 or requests to enter device codes or to release a sign-in that was not initiated by the user. Unusual login attempts from unknown regions or at unusual times can also indicate a potential attack.    <\/span><\/p><p><span style=\"font-weight: 400\">In addition, suspicious activity within Outlook, OneDrive or Teams should be carefully monitored, especially if files, emails or settings are changed for no apparent reason. Since the registration procedures used often seem legitimate, the following applies as a general rule: Every unexpected registration or release request should be critically examined before reacting to it.   <\/span><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-f76f0d3 e-flex e-con-boxed e-con e-parent\" data-id=\"f76f0d3\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-7d345c5 elementor-widget-divider--view-line elementor-widget elementor-widget-divider\" data-id=\"7d345c5\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"divider.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-divider\">\n\t\t\t<span class=\"elementor-divider-separator\">\n\t\t\t\t\t\t<\/span>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-bd880b5 e-flex e-con-boxed e-con e-parent\" data-id=\"bd880b5\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t<div class=\"elementor-element elementor-element-886e1a4 e-con-full e-flex e-con e-child\" data-id=\"886e1a4\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-cec045f elementor-widget elementor-widget-text-editor\" data-id=\"cec045f\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><b>What protective measures are recommended?  <\/b><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-6e504e5 e-con-full e-flex e-con e-child\" data-id=\"6e504e5\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t<div class=\"elementor-element elementor-element-864e024 elementor-widget elementor-widget-text-editor\" data-id=\"864e024\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><span style=\"font-weight: 400\">The good news is that even though Kali365 is targeting modern authentication methods, companies can significantly reduce their risk.<\/span><\/p><p><span style=\"font-weight: 400\">Key measures include:<\/span><\/p><ul><li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Regularly sensitize employees to modern phishing techniques<\/span><\/li><li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Actively monitor sign-in events in Microsoft 365<\/span><\/li><li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Consistently use conditional access policies<\/span><\/li><li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Restrict authentication procedures that are not needed<\/span><\/li><li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Check suspicious sessions and permissions regularly<\/span><\/li><li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Use security solutions that detect unusual login and account activity (e.g., EDR &amp; SIEM systems)<\/span><\/li><\/ul><p> <\/p><p><span style=\"font-weight: 400\">Above all, it is important not to consider MFA as the sole protective measure. Modern attacks show that a multi-layered approach to security is necessary. <\/span><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-f7c806f e-flex e-con-boxed e-con e-parent\" data-id=\"f7c806f\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-de00858 elementor-widget-divider--view-line elementor-widget elementor-widget-divider\" data-id=\"de00858\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"divider.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-divider\">\n\t\t\t<span class=\"elementor-divider-separator\">\n\t\t\t\t\t\t<\/span>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-446acbd e-flex e-con-boxed e-con e-parent\" data-id=\"446acbd\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-870f46b elementor-widget elementor-widget-text-editor\" data-id=\"870f46b\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><span style=\"font-weight: 400\">Kali365 highlights an important trend in cybercrime: threat actors are increasingly focused on bypassing established protections rather than attacking them outright.<\/span><\/p>\n<p><span style=\"font-weight: 400\">For companies, this means that even supposedly well-protected Microsoft 365 environments should be regularly checked and monitored. The combination of technical protective measures, active monitoring and sensitized employees remains the most effective protection against modern phishing attacks. <\/span><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-8530d6c e-flex e-con-boxed e-con e-parent\" data-id=\"8530d6c\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-3bbb54c elementor-widget-divider--view-line elementor-widget elementor-widget-divider\" data-id=\"3bbb54c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"divider.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-divider\">\n\t\t\t<span class=\"elementor-divider-separator\">\n\t\t\t\t\t\t<\/span>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f2d97c9 elementor-widget elementor-widget-text-editor\" data-id=\"f2d97c9\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p><i>Do you want to stay informed about current threats and security vulnerabilities?<\/i><\/p><p><i>Subscribe to our newsletter and receive important warnings, recommendations for action and assessments of current cyber risks directly in your inbox.<\/i><\/p><p> <\/p><p><b>Sources &amp; Further Information<\/b><\/p><ul><li style=\"font-weight: 400\"><i><span style=\"font-weight: 400\">FBI Internet Crime Complaint Center (IC3): Kali365 Phishing Campaign Targeting Microsoft 365 Users<\/span><\/i><\/li><\/ul><ul><li style=\"font-weight: 400\"><i><span style=\"font-weight: 400\">Microsoft Learn: OAuth 2.0 Device Authorization Grant Flow<\/span><\/i><\/li><\/ul><ul><li style=\"font-weight: 400\"><i><span style=\"font-weight: 400\">Help Net Security: FBI warns about Kali365 phishing attacks<\/span><\/i><\/li><\/ul><ul><li style=\"font-weight: 400\"><i><span style=\"font-weight: 400\">Redmond Magazine: FBI urges Microsoft 365 defenders to watch for Kali365 phishing attacks<\/span><\/i><\/li><\/ul><ul><li style=\"font-weight: 400\"><i><span style=\"font-weight: 400\">Malwarebytes: Kali365 phishing kit bypasses MFA and targets Microsoft logins<\/span><\/i><\/li><\/ul>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-9f86355 e-flex e-con-boxed e-con e-parent\" data-id=\"9f86355\" data-element_type=\"container\" data-e-type=\"container\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t\t\t<div class=\"elementor-element elementor-element-dd90633 elementor-widget-divider--view-line elementor-widget elementor-widget-divider\" data-id=\"dd90633\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"divider.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-divider\">\n\t\t\t<span class=\"elementor-divider-separator\">\n\t\t\t\t\t\t<\/span>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>Multi-factor authentication (MFA) has been considered one of the most effective protection measures against account takeovers for years. Many organizations rely on an additional security feature \u2014 such as an authenticator app or SMS \u2014 to prevent threat actors from accessing corporate accounts.<br \/>\nBut cybercriminals are constantly evolving their methods. With Kali365, security researchers and authorities are currently observing an attack method that shows that even proven protection mechanisms are not always sufficient. Companies that use Microsoft 365 in particular should follow developments closely and review their security measures.   <\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[22],"tags":[],"class_list":["post-30027","post","type-post","status-publish","format-standard","hentry","category-gefahrenwarnung"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now - Perseus Technologies<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now - Perseus Technologies\" \/>\n<meta property=\"og:description\" content=\"Multi-factor authentication (MFA) has been considered one of the most effective protection measures against account takeovers for years. Many organizations rely on an additional security feature \u2014 such as an authenticator app or SMS \u2014 to prevent threat actors from accessing corporate accounts. But cybercriminals are constantly evolving their methods. With Kali365, security researchers and authorities are currently observing an attack method that shows that even proven protection mechanisms are not always sufficient. Companies that use Microsoft 365 in particular should follow developments closely and review their security measures.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/\" \/>\n<meta property=\"og:site_name\" content=\"Perseus Technologies\" \/>\n<meta property=\"article:published_time\" content=\"2026-06-10T08:51:38+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-08-10T08:31:38+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"300\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Anastasia Pamoukis\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Anastasia Pamoukis\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/\"},\"author\":{\"name\":\"Anastasia Pamoukis\",\"@id\":\"https:\\\/\\\/perseus.de\\\/#\\\/schema\\\/person\\\/6c87a2feea6439d0ead16c8f0f07e40b\"},\"headline\":\"New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now\",\"datePublished\":\"2026-06-10T08:51:38+00:00\",\"dateModified\":\"2026-08-10T08:31:38+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/\"},\"wordCount\":871,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/perseus.de\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/perseus.de\\\/wp-content\\\/uploads\\\/2026\\\/07\\\/Coverbild-Gefahrenwarnung_EN-1024x256.png\",\"articleSection\":[\"Gefahrenwarnung\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/\",\"url\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/\",\"name\":\"New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now - Perseus Technologies\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/perseus.de\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/perseus.de\\\/wp-content\\\/uploads\\\/2026\\\/07\\\/Coverbild-Gefahrenwarnung_EN-1024x256.png\",\"datePublished\":\"2026-06-10T08:51:38+00:00\",\"dateModified\":\"2026-08-10T08:31:38+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/#primaryimage\",\"url\":\"https:\\\/\\\/perseus.de\\\/wp-content\\\/uploads\\\/2026\\\/07\\\/Coverbild-Gefahrenwarnung_EN-1024x256.png\",\"contentUrl\":\"https:\\\/\\\/perseus.de\\\/wp-content\\\/uploads\\\/2026\\\/07\\\/Coverbild-Gefahrenwarnung_EN-1024x256.png\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/perseus.de\\\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/perseus.de\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/perseus.de\\\/#website\",\"url\":\"https:\\\/\\\/perseus.de\\\/\",\"name\":\"perseus-web.de\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/perseus.de\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/perseus.de\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/perseus.de\\\/#organization\",\"name\":\"perseus-web.de\",\"url\":\"https:\\\/\\\/perseus.de\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/perseus.de\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/perseus.de\\\/wp-content\\\/uploads\\\/2025\\\/03\\\/PerseusTechnologie_Color-2.png\",\"contentUrl\":\"https:\\\/\\\/perseus.de\\\/wp-content\\\/uploads\\\/2025\\\/03\\\/PerseusTechnologie_Color-2.png\",\"width\":536,\"height\":172,\"caption\":\"perseus-web.de\"},\"image\":{\"@id\":\"https:\\\/\\\/perseus.de\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/perseus.de\\\/#\\\/schema\\\/person\\\/6c87a2feea6439d0ead16c8f0f07e40b\",\"name\":\"Anastasia Pamoukis\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/88febef1895859fc3a543c774ae6bc44cde0f02199f7f792af67eaf196406342?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/88febef1895859fc3a543c774ae6bc44cde0f02199f7f792af67eaf196406342?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/88febef1895859fc3a543c774ae6bc44cde0f02199f7f792af67eaf196406342?s=96&d=mm&r=g\",\"caption\":\"Anastasia Pamoukis\"},\"sameAs\":[\"https:\\\/\\\/perseus.de\"],\"url\":\"https:\\\/\\\/perseus.de\\\/en\\\/author\\\/anastasia-pamoukis\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now - Perseus Technologies","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/","og_locale":"en_US","og_type":"article","og_title":"New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now - Perseus Technologies","og_description":"Multi-factor authentication (MFA) has been considered one of the most effective protection measures against account takeovers for years. Many organizations rely on an additional security feature \u2014 such as an authenticator app or SMS \u2014 to prevent threat actors from accessing corporate accounts. But cybercriminals are constantly evolving their methods. With Kali365, security researchers and authorities are currently observing an attack method that shows that even proven protection mechanisms are not always sufficient. Companies that use Microsoft 365 in particular should follow developments closely and review their security measures.","og_url":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/","og_site_name":"Perseus Technologies","article_published_time":"2026-06-10T08:51:38+00:00","article_modified_time":"2026-08-10T08:31:38+00:00","og_image":[{"width":1200,"height":300,"url":"https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN.png","type":"image\/png"}],"author":"Anastasia Pamoukis","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Anastasia Pamoukis","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/#article","isPartOf":{"@id":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/"},"author":{"name":"Anastasia Pamoukis","@id":"https:\/\/perseus.de\/#\/schema\/person\/6c87a2feea6439d0ead16c8f0f07e40b"},"headline":"New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now","datePublished":"2026-06-10T08:51:38+00:00","dateModified":"2026-08-10T08:31:38+00:00","mainEntityOfPage":{"@id":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/"},"wordCount":871,"commentCount":0,"publisher":{"@id":"https:\/\/perseus.de\/#organization"},"image":{"@id":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/#primaryimage"},"thumbnailUrl":"https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN-1024x256.png","articleSection":["Gefahrenwarnung"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/","url":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/","name":"New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now - Perseus Technologies","isPartOf":{"@id":"https:\/\/perseus.de\/#website"},"primaryImageOfPage":{"@id":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/#primaryimage"},"image":{"@id":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/#primaryimage"},"thumbnailUrl":"https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN-1024x256.png","datePublished":"2026-06-10T08:51:38+00:00","dateModified":"2026-08-10T08:31:38+00:00","breadcrumb":{"@id":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/#primaryimage","url":"https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN-1024x256.png","contentUrl":"https:\/\/perseus.de\/wp-content\/uploads\/2026\/07\/Coverbild-Gefahrenwarnung_EN-1024x256.png"},{"@type":"BreadcrumbList","@id":"https:\/\/perseus.de\/neue-phishing-masche-umgeht-mfa-warum-microsoft-365-nutzende-jetzt-besonders-aufmerksam-sein-sollten\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/perseus.de\/"},{"@type":"ListItem","position":2,"name":"New phishing scam bypasses MFA: Why Microsoft 365 users should be particularly attentive now"}]},{"@type":"WebSite","@id":"https:\/\/perseus.de\/#website","url":"https:\/\/perseus.de\/","name":"perseus-web.de","description":"","publisher":{"@id":"https:\/\/perseus.de\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/perseus.de\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/perseus.de\/#organization","name":"perseus-web.de","url":"https:\/\/perseus.de\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/perseus.de\/#\/schema\/logo\/image\/","url":"https:\/\/perseus.de\/wp-content\/uploads\/2025\/03\/PerseusTechnologie_Color-2.png","contentUrl":"https:\/\/perseus.de\/wp-content\/uploads\/2025\/03\/PerseusTechnologie_Color-2.png","width":536,"height":172,"caption":"perseus-web.de"},"image":{"@id":"https:\/\/perseus.de\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/perseus.de\/#\/schema\/person\/6c87a2feea6439d0ead16c8f0f07e40b","name":"Anastasia Pamoukis","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/88febef1895859fc3a543c774ae6bc44cde0f02199f7f792af67eaf196406342?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/88febef1895859fc3a543c774ae6bc44cde0f02199f7f792af67eaf196406342?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/88febef1895859fc3a543c774ae6bc44cde0f02199f7f792af67eaf196406342?s=96&d=mm&r=g","caption":"Anastasia Pamoukis"},"sameAs":["https:\/\/perseus.de"],"url":"https:\/\/perseus.de\/en\/author\/anastasia-pamoukis\/"}]}},"_links":{"self":[{"href":"https:\/\/perseus.de\/en\/wp-json\/wp\/v2\/posts\/30027","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/perseus.de\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/perseus.de\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/perseus.de\/en\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/perseus.de\/en\/wp-json\/wp\/v2\/comments?post=30027"}],"version-history":[{"count":4,"href":"https:\/\/perseus.de\/en\/wp-json\/wp\/v2\/posts\/30027\/revisions"}],"predecessor-version":[{"id":30081,"href":"https:\/\/perseus.de\/en\/wp-json\/wp\/v2\/posts\/30027\/revisions\/30081"}],"wp:attachment":[{"href":"https:\/\/perseus.de\/en\/wp-json\/wp\/v2\/media?parent=30027"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/perseus.de\/en\/wp-json\/wp\/v2\/categories?post=30027"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/perseus.de\/en\/wp-json\/wp\/v2\/tags?post=30027"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}