Hackers use Microsoft Teams to steal email credentials by tricking users with fake billing invitations globally every week


  • Hackers create finance-themed teams to trick users without using phishing links
  • Blurred team names bypass auto-detection while appearing normal for targets
  • Fraudulent phone calls attempt to extract login credentials and sensitive information

Attackers are now abusing legitimate Microsoft Teams features to reach users without using traditional phishing links, new research has found.

Experts at CheckPoint found that the campaign begins when hackers create new teams with finance-themed or urgent billing names, often embedding obfuscation techniques such as mixed Unicode characters or visually similar symbols.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top