ADVERTISEMENT

Beware: attackers now using real Microsoft sign-in screen for phishing

Every screen the victim sees is real.

microsoft-campaign

Image by Cybernews.

Gintaras Radauskas
Gintaras Radauskas Senior Journalist
July 30, 2026 Updated: 53 seconds ago 2 min read
Key takeaways:
teams-lure
Courtesy of Check Point.

Check if your data has been leaked

Find out if your email, phone number or related personal information might have fallen into the wrong hands.
18,611,353,922
Breached accounts
36,030
Breached websites
ADVERTISEMENT
Do not trust an email simply because it appears to come from an internal address.
  • Check whether the destination matches the service referenced in the message, and be suspicious when different buttons lead to the same URL.
  • Verify that the sender name, sender address, and sending domain are consistent. In this campaign, the message appeared to come from the recipient’s own email address, while the display name claimed to represent Teams activity.
  • Do not trust an email simply because it appears to come from an internal address. Display names and sender addresses can be spoofed or manipulated.
  • When uncertain, open Teams or other applications directly through the official app rather than using links in the email.
  • Finally, report suspicious messages immediately. Early reporting allows security teams to investigate the application, revoke malicious consent, identify affected accounts, and block related campaign activity.
Gintaras Radauskas
Senior Journalist
ADVERTISEMENT