Phishing Campaign Abuses Microsoft Power BI to Deploy Rogue RMMs

Attackers are abusing Microsoft Power BI to host phishing lures on the legitimate app.powerbi.com domain, slipping past email security filters, Huntress reports. The campaign, first observed on September 10, drops multiple rogue ScreenConnect clients on victims' machines to secure persistent remote access. Organizations should treat unexpected Power BI dashboard links with the same suspicion as any other phishing lure.

Source: www.huntress.com

Curated Permalink