@volexity.com recently identified multiple Russian threat actors targeting users via
#socialengineering +
#spearphishing campaigns with Microsoft 365 Device Code authentication (a well-known technique) with alarming success:
www.volexity.com/blog/2025/02...
#dfir #threatintel #m365security 
Multiple Russian Threat Actors Targeting Microsoft Device Code Authentication
Starting in mid-January 2025, Volexity identified several social-engineering and spear-phishing campaigns by Russian threat actors aimed at compromising Microsoft 365 (M365) accounts. These attack cam...