A new Microsoft 365 phishing service has emerged, so be on your guard
December 23, 2024

A new Microsoft 365 phishing service has emerged, so be on your guard


  • Researchers say Rockstar2FA went silent in November 2024
  • But soon a new PaaS emerged with partially overlapping infrastructure
  • The new PaaS is called FlowerStorm, and it targets Microsoft 365 accounts

Cyber ​​security researchers from sophos A new phishing-as-a-service (PaaS) tool has emerged that allows threat actors to easily hunt people’s Microsoft 365 credentials.

The company revealed that the tool, called FlowerStorm, may have emerged from the (resolved) Rockstar2FA, noting that detections of Rockstar2FA “suddenly went quiet” in November.

2024-12-23 15:14:00

Leave a Reply

Your email address will not be published. Required fields are marked *