Cybersecurity Alert: Iranian Malware Attack Targets Microsoft 365 in Israel and U.A.E.
In a disturbing development, a campaign of password spraying attacks has been traced back to Iranian threat actors, targeting Microsoft 365 environments in Israel and the United Arab Emirates. This ongoing operation, noted by Israeli cybersecurity firm Check Point, has already impacted over 300 organizations in Israel and more than 25 in the U.A.E., with additional attempts reported in Europe and the U.S.
The attackers used a method known as password spraying, where they attempt a common password across many usernames, evading defenses that would trigger on more aggressive attacks. Victims range from government entities to private sector companies.
To protect against similar threats, organizations are urged to monitor sign-in logs, enforce multi-factor authentication (MFA), and limit access to trusted locations.
Risk Level: High
This attack highlights the persistent threat of state-sponsored cyber operations amid global tensions.
Source: View Original Report
