

This campaign works with a SharePoint lure in the display name as well as in the message. Microsoft Security Intelligence July 30, 2021 If you think your account is completely compromised, you can create a new email instead.The emails use a SharePoint lure in the display name as well as in the message, which poses as a "file share" request for supposed "Staff Reports", "Bonuses", "Pricebooks", and other content, with a link that navigates to the phishing page.

You can also take a look at How to block Unwanted emails on your account. If the login is normal and everything seems fine, it must mean that the email was from a phisher and they meant to get access to your account. If the login is prevented, it means that the email must be authentic and you really need to verify your identity to log in to your account. Whenever there actually is any unusual activity regarding your account, it is also displayed on the log in page of the site. Since we can’t be a hundred percent sure about the authenticity of the email sender, it is recommended that instead of following the links in the email, you log in to your account manually after opening the site yourself and check if there is any mention of the unusual activity that the email suggested. Also, there are many other methods through which the perpetrator can show a specific email as the sender and fool the user into thinking that it is credible.

After being conflicted with the information regarding this address, we decided to investigate on our own.Īccording to experts, the sender’s address that is shown in an email can easily be manipulated by hacking the users’ emails’ UI and programming it in such a way that it shows this particular email as the sender. We have given this verdict keeping in regards that although Microsoft lists this address as safe and approves it, there have been many reports from different sources that suggest that this is a very elaborate phishing attempt and targets users’ email accounts and gains access to all the associated apps/services to the email.
