Scammers are exploiting a legitimate Microsoft email address to send sophisticated phishing messages, prompting an active investigation by the tech giant to secure its automated notification systems.
Key Points
- Attackers are utilizing the official "msonlineservicesteam@microsoftonline.com" address to send fraudulent emails to unsuspecting users.
- The compromised account is typically used by Microsoft to deliver legitimate two-factor authentication codes and security alerts.
- Evidence suggests scammers created new Microsoft accounts to bypass security filters rather than spoofing the sender's address.
- Microsoft is currently investigating the breach and removing accounts that violate its terms of service to prevent further phishing attempts.
- Users are advised to verify links and remain cautious of suspicious subject lines that mimic official transaction or security notifications.