{"id":39956,"date":"2020-09-10T16:55:25","date_gmt":"2020-09-10T08:55:25","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=39956"},"modified":"2020-09-10T16:55:26","modified_gmt":"2020-09-10T08:55:26","slug":"phishing-scam-uses-sharepoint-and-one-note-to-go-after-passwords","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2020\/09\/10\/phishing-scam-uses-sharepoint-and-one-note-to-go-after-passwords\/","title":{"rendered":"Phishing scam uses Sharepoint and One Note to go after passwords"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><strong>Sophos reported new phishing scams through cloud-based platforms. This involves the use of SharePoint and OneNote to go after passwords. Instead of simply spamming out a clickable link to as many people as possible, cybercriminals would use more labyrinthine techniques.\u00a0<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">First, crooks would send an innocent-looking email with an attachment from a sender, whose email account had evidently been hacked. The attachment takes the victim to a message with a Sharepoint link to access a One Note file that leads to a login form. If the victim puts in a password, it goes straight to the crooks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Given this new phishing scam, Paul Ducklin, Principal Research Scientist at Sophos, has provided some tips to help users and companies stay secure:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li><strong>Don\u2019t click login links that you reach from an email. <\/strong>That\u2019s an extension to our usual advice never to click login links that appear directly in emails. Don\u2019t let the crooks distract you by leading you away from your email client first to make their phishing page feel more believable when you get there. If you started from an email, stop if you hit a password demand. Find your own way to the site or service you\u2019re supposed to use.<\/li><li><strong>Keep your eyes open for obvious giveaways.<\/strong> As we\u2019ve said many times before, the only thing worse than being scammed is being scammed and then realizing that the signs were there all along. Crooks don\u2019t always make obvious mistakes, but if they do, make sure you don\u2019t miss them.<\/li><li><strong>If you think you put in a password where you shouldn\u2019t, change it as soon as you can.<\/strong> Find your own way to the official site of the service concerned, and log in directly. The sooner you fix your mistake, the less chance the crooks have of getting there first.<\/li><li><strong>Use 2FA whenever you can.<\/strong> Accounts that are protected by two-factor authentication are harder for crooks to take over because they can\u2019t just harvest your password and use it on its own later. They need to trick you into revealing your 2FA code at the very moment that they\u2019re phishing you.<\/li><li><strong>Consider phishing simulators like Sophos Phish Threat.<\/strong> If you are part of the IT security team, Phish Threat gives you a safe way to expose your staff to phishing-like attacks, so they can learn their lessons when it\u2019s you at the other end, not the crooks.<\/li><\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Instead of simply spamming out a clickable link to as many people as possible, cybercriminals would use more labyrinthine techniques. <\/p>\n","protected":false},"author":6,"featured_media":39957,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[54,2103,3914,53,4100,4234,206],"class_list":["post-39956","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","tag-security","tag-security-breach","tag-security-platform","tag-security-risk-management","tag-security-solutions","tag-security-as-a-service","tag-sophos"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/39956","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=39956"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/39956\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/39957"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=39956"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=39956"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=39956"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}