EPISODE · Jun 19, 2025 · 3 MIN
UNK_SneakyStrike: A Massive Microsoft Entra ID Account Takeover Campaign
from Cybersecurity by Buzz My Biz · host Randy Cooper
A large-scale account takeover (ATO) campaign, dubbed UNK_SneakyStrike, targeted over 80,000 Microsoft Entra ID accounts across approximately 100 cloud tenants, as reported by The Hacker News on June 12, 2025. The campaign, which peaked in January 2025 with 16,500 accounts targeted in a single day, exploits the open-source penetration testing tool TeamFiltration to conduct password-spraying attacks. These attacks, aimed at Microsoft 365 services like Outlook, Teams, and OneDrive, highlight the growing misuse of legitimate tools for malicious purposes, compromising hundreds of organizations worldwide.Read this blog post: https://buzzmybiz.co/blog/unk_sneakystrike-a-massive-microsoft-entra-id-account-takeover-campaignBuzz My Biz provides a unified cybersecurity platform ideal for business, education, healthcare, and local governments. Give us a call at (678) 389-9289 or schedule a meeting today .
NOW PLAYING
UNK_SneakyStrike: A Massive Microsoft Entra ID Account Takeover Campaign
No transcript for this episode yet
Similar Episodes
Mar 26, 2026 ·1m
Jan 2, 2026 ·47m
Dec 21, 2025 ·46m