O-UNC-066 uses voice phishing combined with deceptively authentic phishing websites and manually controlled PHP panels to steal access from Microsoft 365 customers.
Attackers control fake passkey registration pages in real time via PHP panel to bypass multi-factor authentication and gain access to Microsoft 365 accounts.