Nov. 3, 2023, 11:45 p.m. | /u/callme_e

cybersecurity www.reddit.com

Today a number of phishing emails got through our M365 Exchange/Defender filters. I analyzed the phishing links through a sandbox and observed that the phishing pages had the exact same custom branding elements—colors, company logo, and specific language—that were designed for our legitimate M365 login portal. The branding was intended to help our users distinguish authentic pages from malicious ones.

The phishing URLs are easy to spot that its malicious. However, I'm concerned our users will overlook the URL check …

automated branding campaign colors copy cybersecurity defender emails exchange language links logo m365 page phishing phishing emails sandbox today

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC