As cited
Copy frozen at (site build).
threat intel
Hackers Favor US Eastern Business Hours in M365 Phishing Campaign
KnowBe4 researchers identified a phishing campaign that exploits Microsoft 365's Direct Send feature to deliver malicious emails, with attackers timing campaigns to align with US Eastern business hours.
Why it matters: Organizations using Microsoft 365 are targeted; practitioners should review Direct Send policies and email security controls to block unauthorized sending paths.
- Source published
- First seen by Cybersecurity Tracker