phishing
US-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote Access
Medium
Summary
A US-focused phishing campaign, dubbed CSuite, is leveraging Adobe, DocuSign, and other business lures to steal Microsoft 365 sessions and deploy remote access tools like ScreenConnect and Action1. ANY.RUN researchers have identified a strong US concentration in this activity, and the ability to compromise both accounts and endpoints significantly expands the potential impact of a single phishing incident.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
