O-UNC-066 uses voice phishing combined with deceptively authentic phishing websites and manually controlled PHP panels to steal access from Microsoft 365 customers.
While AI-powered attackers refine social engineering methods, CISOs lose management support for employee security and must meet conflicting stakeholder expectations.
Attackers control fake passkey registration pages in real time via PHP panel to bypass multi-factor authentication and gain access to Microsoft 365 accounts.
Attackers exploit the legitimate Microsoft authentication flow as an attack vector, bypassing traditional anti-phishing controls through social engineering lures.
PamStealer combines social engineering, native macOS functions, and Rust-based payloads to masquerade as a system process and steal passwords and clipboard contents.