Cybercriminals impersonate Microsoft Teams to steal Office 365 credentials .

This new hacking campaign was discovered by researchers at Abnormal Security and has targeted over 50,000 users Office with an automated message that appears to come from the Microsoft Teams communication platform.
According to researchers, the fake email states: “There is new activity in Teams” and looks like an automated notification from Microsoft Teams.
The email makes the recipient believe that their colleagues are trying to contact them and urges them to click the “Reply in Teams” option.
Victims who click on any of the three links included in the email are taken to a malicious phishing pagewhere they email and password . their
"The phishing landing page closely resembles the Microsoft. The URL begins with 'microsftteams', offering further credibility," the researchers noted.
If victims provide their credentials, hackers . will gain access to both them and sensitive information stored in their accountIn addition, attackers may be able to carry out BEC attacks and gain access to the corporate network.
Cybercriminals are taking advantage of the fact that Microsoft Teams and other communication platforms are being heavily used due to COVID-19 and are using it to scam their victims.

“Because Microsoft Teams is an instant messaging service, recipients of this notification can click on it directly to quickly respond to any message they believe they may have missed,” Abnormal Security noted.
In May, researchers at Abnormal Security had discovered two other similar campaigns, where scammers had again exploited Microsoft Teams to scam their victims.
According to Infosecurity Magazine, researchers had said of those attacks: “These attackers created convincing fake emails that came from Microsoft Teams. The phishing landing pages hosting both attacks resembled the real websites.”
