Nov. 3, 2023, 11:45 p.m. | /u/callme_e

cybersecurity www.reddit.com

Today a number of phishing emails got through our M365 Exchange/Defender filters. I analyzed the phishing links through a sandbox and observed that the phishing pages had the exact same custom branding elements—colors, company logo, and specific language—that were designed for our legitimate M365 login portal. The branding was intended to help our users distinguish authentic pages from malicious ones.

The phishing URLs are easy to spot that its malicious. However, I'm concerned our users will overlook the URL check …

automated branding campaign colors copy cybersecurity defender emails exchange language links logo m365 page phishing phishing emails sandbox today

Azure DevSecOps Cloud Engineer II

@ Prudent Technology | McLean, VA, USA

Security Engineer III - Python, AWS

@ JPMorgan Chase & Co. | Bengaluru, Karnataka, India

SOC Analyst (Threat Hunter)

@ NCS | Singapore, Singapore

Managed Services Information Security Manager

@ NTT DATA | Sydney, Australia

Senior Security Engineer (Remote)

@ Mattermost | United Kingdom

Penetration Tester (Part Time & Remote)

@ TestPros | United States - Remote