{"id":567,"date":"2025-04-23T08:37:55","date_gmt":"2025-04-23T06:37:55","guid":{"rendered":"https:\/\/familiebuckens.nl\/?p=567"},"modified":"2025-04-24T08:39:13","modified_gmt":"2025-04-24T06:39:13","slug":"russian-hackers-exploit-microsoft-oauth-to-target-ukraine-allies-via-signal-and-whatsapp","status":"publish","type":"post","link":"https:\/\/familiebuckens.nl\/index.php\/2025\/04\/23\/russian-hackers-exploit-microsoft-oauth-to-target-ukraine-allies-via-signal-and-whatsapp\/","title":{"rendered":"Russian Hackers Exploit Microsoft OAuth to Target Ukraine Allies via Signal and WhatsApp"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Multiple suspected Russia-linked threat actors are &#8220;aggressively&#8221; targeting individuals and organizations with ties to Ukraine and human rights with an aim to gain unauthorized access to Microsoft 365 accounts since early March 2025.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The highly targeted social engineering operations, per Volexity, are a shift from previously documented attacks that leveraged a technique known as&nbsp;<a href=\"https:\/\/thehackernews.com\/2025\/02\/microsoft-russian-linked-hackers-using.html\" rel=\"noreferrer noopener\" target=\"_blank\">device code phishing<\/a>&nbsp;to achieve the same goals, indicating that indicating that the Russian adversaries behind these campaigns are actively refining their tradecraft to fly under the radar.<\/p>\n\n\n<a class=\"wp-block-read-more\" href=\"https:\/\/familiebuckens.nl\/index.php\/2025\/04\/23\/russian-hackers-exploit-microsoft-oauth-to-target-ukraine-allies-via-signal-and-whatsapp\/\" target=\"_self\"><a href=\"https:\/\/thehackernews.com\/2025\/04\/russian-hackers-exploit-microsoft-oauth.html\">Russian Hackers Exploit Microsoft OAuth to Target Ukraine Allies via Signal and WhatsApp<\/a><span class=\"screen-reader-text\">: Russian Hackers Exploit Microsoft OAuth to Target Ukraine Allies via Signal and WhatsApp<\/span><\/a>","protected":false},"excerpt":{"rendered":"<p>Multiple suspected Russia-linked threat actors are &#8220;aggressively&#8221; targeting individuals and organizations with ties to Ukraine and human rights with an aim to gain unauthorized access to Microsoft 365 accounts since early March 2025. The highly targeted social engineering operations, per Volexity, are a shift from previously documented attacks that leveraged&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[40,9],"class_list":["post-567","post","type-post","status-publish","format-standard","hentry","category-cybersecurity","tag-40","tag-russia"],"_links":{"self":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/567","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/comments?post=567"}],"version-history":[{"count":1,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/567\/revisions"}],"predecessor-version":[{"id":568,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/posts\/567\/revisions\/568"}],"wp:attachment":[{"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/media?parent=567"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/categories?post=567"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/familiebuckens.nl\/index.php\/wp-json\/wp\/v2\/tags?post=567"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}