Hackers Target US and EU Firms With Microsoft 365 Session Hijacking and RMM Abuse

Hackers are exploiting Microsoft 365 sessions, RMM software, and phishing-as-a-service kits like Mirage2FA to hijack corporate accounts across the US and Europe. To mitigate these threats, organizations must revoke active tokens, implement phishing-resistant MFA, and utilize behavioral threat intelligence to detect malicious activity disguised as routine administrative tasks.

Edward Kiledjian @ekiledjian