
Threat Actors Exploit BYOD Policies to Access Microsoft 365 and Corporate Data
CybersecuritySocial EngineeringData TheftCorporate SecurityBYODMicrosoft 365ShinyHuntersExtortionGraph API
Threat actors are exploiting bring-your-own-device (BYOD) policies through voice calling campaigns to gain access to Microsoft 365 and corporate data. The attackers are leveraging Microsoft's Graph API to identify high-value targets. After gaining access, the threat actors are passing their access credentials or permissions to extortion groups, specifically ShinyHunters, which is known for data theft and extortion activities.