ADVERTISEMENT

Cybercrooks abuse stolen SharePoint, OneDrive, and Dropbox accounts for phishing

If someone shares a file on SharePoint, OneDrive, Dropbox, or any other legitimate file hosting service, beware – it may be a phishing attack designed to bypass defenses.

Microsoft signin, login, password

Image by rafapress | Shutterstock

Ernestas Naprys
Ernestas Naprys Senior Journalist
October 9, 2024 2 min read

Typical attack chain starts with account compromise

  • Restricted files are configured to be accessible solely to the designated recipient who needs to be singed into the particular sharing service, such as Dropbox, OneDrive, or SharePoint.
  • Files with view-only restrictions bypass email security systems, disabling the ability to download and detect embedded URLs within the file.
ADVERTISEMENT
ADVERTISEMENT