Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks
- Posted on September 7, 2026
- By The Hacker News
- 4 Views
- 1 min read
A sophisticated cybercriminal group known as PREY-0058 is conducting targeted vishing attacks against corporate executives, impersonating IT help desk personnel to compromise Microsoft 365 and SaaS platforms. By combining social engineering with Account-in-the-Middle token theft techniques, attackers gain unauthorized access to sensitive business data, which they subsequently leverage for extortion purposes. Organizations must strengthen security awareness training and implement multi-factor authentication protocols to defend against these evolving threats.
Summary auto-generated by AI from the original publisher's content. Editorial standards.