Phishing scam is on the rise, targeting executives in the insurance and financial services industries to harvest their Microsoft 365 credentials and launch business email compromise (BEC) attacks.
Targets get a spoofed Office 365 security update, sent from domains with Microsoft-themed names to make them seem even more legitimate.