Hackers Are Using Passkey Updates as a New Microsoft Phishing Hook
Microsoft warns attackers are using passkey and MFA update requests to phish employees, hijack sessions, and access Microsoft 365 data. The post Hackers Are Using Passkey Updates as a New Microsoft Phishing Hook appeared first on TechRepublic .
Hackers are exploiting Microsoft's passkey and MFA update requests to launch phishing attacks, according to Microsoft researchers. These features were intended to make accounts more secure, but attackers have learned to use them for their advantage. The hackers impersonate IT staff and request passkey or MFA updates, tricking employees into following a phishing link or providing authentication information.
Once an attacker gains access to an account, they conduct reconnaissance, add authentication methods for persistence, and access sensitive data across services like SharePoint, OneDrive, and Exchange Online. Microsoft recommends that organizations remain vigilant and use a layered approach to identity security, combining phishing-resistant authentication with tighter enrollment controls, session monitoring, and rapid token revocation.
Written by urgent.news from TechRepublic's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.