Hackers Broke Into Microsoft 365 Through Forgotten Accounts Nobody Was Watching
Details: https://t.co/SM6z0SmcVI
Hackers have breached Microsoft 365 environments by targeting accounts that were still active but unmonitored. An old password and missing sign-in protections gave intruders a route into email, files, and cloud applications.
The campaign focused heavily on organizations in Chile, including a large retailer and financial institutions.
Rather than repeatedly guessing passwords for one person, the operator tested likely default passwords across many accounts, a technique seen in similar password spraying attacks, then used successful logins to explore cloud services.
#cybersecuritynews
🟧 #HackTuesday 🟧
Hack Tuesday: Week 23 - 29 Sep 2026
⚠️458 cyber attacks across 74 countries ⚠️
➡️The most active threat actor last week was NoName057(16) claiming responsibility for 25 cyberattacks.
➡️The USA is the most affected country, accounting for 19% of incidents, with 87 cyber attacks.
➡️The Gov / Mil / LE sector is the most targeted, accounting for 19.7% of incidents with 90 cyber attacks.
➡️The estimated Critical cyber attacks account to 66 (14.4% of the total).
➡️Overall, the claimed compromised data amounts to approximately 22.3 TB.
More details:
https://t.co/E124sZzEXA