As cited
Copy frozen at (site build).
threat intel
Legitimate Apps as Traitorware for Persistent Microsoft | Huntress
Huntress researchers discovered threat actors using legitimate email applications to maintain persistent access to compromised Microsoft 365 environments. The attackers leveraged these benign tools to evade detection while preserving their foothold in victim networks.
Why it matters: Microsoft 365 users and administrators need to monitor for suspicious email app additions and implement stricter controls over third-party application access, as attackers are exploiting legitimate tools to hide persistence.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
Legitimate Apps as Traitorware for Persistent Microsoft | Huntress
Huntress researchers discovered threat actors using legitimate email applications to maintain persistent access to compromised Microsoft 365 environments. The attackers leveraged these benign tools to evade detection while preserving their foothold in victim networks.
Why it matters: Microsoft 365 users and administrators need to monitor for suspicious email app additions and implement stricter controls over third-party application access, as attackers are exploiting legitimate tools to hide persistence.
- Source published
- First seen by Cybersecurity Tracker