{"id":61228,"date":"2026-08-07T11:32:00","date_gmt":"2026-08-07T11:32:00","guid":{"rendered":"https:\/\/www.theregister.com\/a\/5284523"},"modified":"2026-08-07T11:32:00","modified_gmt":"2026-08-07T11:32:00","slug":"attacker-phished-way-into-us-defense-suppliers-microsoft-365-account","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/","title":{"rendered":"Attacker phished way into US defense supplier&#8217;s Microsoft 365 account"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/image.theregister.com\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683\" class=\"ff-og-image-inserted\"><\/div>\n<div data-element-guid=\"d11159dd-82a3-4c53-901c-d41dec75505c\" readability=\"31.46511627907\">\n<p class=\"kicker \">Security<\/p>\n<p class=\"subtitle \">Intruder gained access to engineering files and potentially export-controlled technical data<\/p>\n<\/p><\/div>\n<div data-element-guid=\"4c9dc5d9-c886-4348-bf4a-01d0dc71377d\" readability=\"90.617767941827\">\n<p>US defense and aerospace supplier IEH Corporation &#8216;fessed up that a criminal managed to break into its Microsoft 365 mailbox in a filing with regulators.<\/p>\n<p>In a Form 8-K filed with the Securities and Exchange Commission on Thursday, IEH said one of its staffers fell for a phishing scam that gave an attacker access to its M365 environment.<\/p>\n<p>The attacker &#8220;impersonated a prospective business contact&#8221; and sent the employee what appeared to be a genuine Microsoft sharing link. The accompanying fake login page duly harvested the victim&#8217;s<a href=\"https:\/\/www.theregister.com\/security\/2026\/04\/07\/hundreds-compromised-daily-in-microsoft-device-code-phishes\/5222742\" target=\"_blank\"> M365 credentials<\/a>.<\/p>\n<p>&#8220;The threat actor gained access to mailbox contents, including email messages, attachments, customer communications, purchase orders, engineering-related documentation, and potentially export-controlled technical information,&#8221; IEH said in the <a href=\"https:\/\/d2jidt2wnq36bs.cloudfront.net\/investor_files\/2026\/form8k-36187_iehc_final.pdf\" target=\"_blank\">SEC filing<\/a> [PDF].<\/p>\n<p>IEH said it had found &#8220;no evidence&#8221; that the information was copied or exfiltrated, although it was accessible to the intruder during the &#8220;compromise period.&#8221;<\/p>\n<p>IEH said it discovered the intrusion on August 4 but did not disclose when the compromised account was first accessed or how long the intruder remained inside.<\/p>\n<p>&#8220;The account was secured, malicious mailbox rules were disabled, evidence was preserved, and corrective actions are underway,&#8221; it said. &#8220;Following containment and investigation activities, the company initiated a review of account security controls and authentication protections applicable to Microsoft 365 services.&#8221;<\/p>\n<p>The incident has not disrupted operations, and IEH does not expect it to have a material impact, although the investigation continues.<\/p>\n<div data-element-guid=\"afe083ca-6701-48e9-9bd8-f8827dd7fb42\" class=\"lab4 column articleList layout_vertical imageLayout_left small-12 large-4 small-abs-12 large-abs-4 abs_grid_4 desktop-floatLeft mobile-floatLeft grid-vas-start mobile-grid-vas-start\">\n<div class=\"content border_width_0 border_width_mobile_0 border-radius-48 border-radius-mobile_48\">\n<h2 class=\"article-list-title t19 font-RobotoCondensed\">MORE CONTEXT<\/h2>\n<\/p><\/div>\n<\/div>\n<p>The absence of detected exfiltration does not mean the intruder merely browsed the inbox and left. Compromised mailboxes can be used to monitor communications, impersonate employees, redirect payments, or prepare follow-on attacks, while data theft is not always visible in Microsoft 365 logs.<\/p>\n<p>There is not enough information to attribute the attack. IEH&#8217;s work for defense and aerospace customers could make it an attractive espionage target, but ordinary cybercriminals also compromise mailboxes for fraud and data theft.<\/p>\n<p>Both <a href=\"https:\/\/www.theregister.com\/security\/2026\/07\/30\/russian-spies-take-their-half-click-email-attack-from-zimbra-to-outlook\/5281033\" target=\"_blank\">Russia<\/a> and <a href=\"https:\/\/www.theregister.com\/security\/2026\/06\/04\/five-eyes-china-expanding-state-secret-recruitment-campaign\/5250978\" target=\"_blank\">China<\/a> have been caught snooping around US orgs for defense-related information in the past year, although there is nothing to suggest either was behind the attack on IEH.<\/p>\n<p>Brooklyn-based IEH makes hyperboloid connectors designed for harsh and high-stress environments. Its components are used in printed circuit boards, medical devices, commercial aircraft, fighter jets, missiles, satellites, and other systems.&nbsp;Some of the high profile US programs that use IEH&#8217;s hyperboloid connectors <a href=\"https:\/\/www.iehcorp.com\/defense\" target=\"_blank\">include<\/a> the <a href=\"https:\/\/www.usatoday.com\/press-release\/story\/27597\/ieh-corporation-announces-record-order-backlog-exceeding-23-million-as-demand-for-defense-programs-increases\/\" target=\"_blank\">PATRIOT<\/a> air-defense system, AMRAAM, THAAD, the APKWS precision-guided rocket, and the MARK-48 torpedo. \u00ae<\/p>\n<\/p><\/div>\n<p><img decoding=\"async\" src=\"https:\/\/image.theregister.com\/?imageId=5284669&#038;width=800\">READ MORE <a href=\"https:\/\/www.theregister.com\/security\/2026\/08\/07\/ieh-corp-says-phished-staffer-opened-gates-to-company-m365\/5284523\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p> Intruder gained access to engineering files and potentially export-controlled technical data READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[63],"tags":[307],"class_list":["post-61228","post","type-post","status-publish","format-standard","hentry","category-the-register","tag-security"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Attacker phished way into US defense supplier&#039;s Microsoft 365 account 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Attacker phished way into US defense supplier&#039;s Microsoft 365 account 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2026-08-07T11:32:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/image.theregister.com\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Attacker phished way into US defense supplier&#8217;s Microsoft 365 account\",\"datePublished\":\"2026-08-07T11:32:00+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/\"},\"wordCount\":425,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/image.theregister.com\\\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683\",\"keywords\":[\"Security\"],\"articleSection\":[\"The Register\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/\",\"name\":\"Attacker phished way into US defense supplier's Microsoft 365 account 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/image.theregister.com\\\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683\",\"datePublished\":\"2026-08-07T11:32:00+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/#primaryimage\",\"url\":\"https:\\\/\\\/image.theregister.com\\\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683\",\"contentUrl\":\"https:\\\/\\\/image.theregister.com\\\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Security\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/security\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Attacker phished way into US defense supplier&#8217;s Microsoft 365 account\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Attacker phished way into US defense supplier's Microsoft 365 account 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/","og_locale":"en_US","og_type":"article","og_title":"Attacker phished way into US defense supplier's Microsoft 365 account 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2026-08-07T11:32:00+00:00","og_image":[{"url":"https:\/\/image.theregister.com\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Attacker phished way into US defense supplier&#8217;s Microsoft 365 account","datePublished":"2026-08-07T11:32:00+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/"},"wordCount":425,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/#primaryimage"},"thumbnailUrl":"https:\/\/image.theregister.com\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683","keywords":["Security"],"articleSection":["The Register"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/","url":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/","name":"Attacker phished way into US defense supplier's Microsoft 365 account 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/#primaryimage"},"thumbnailUrl":"https:\/\/image.theregister.com\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683","datePublished":"2026-08-07T11:32:00+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/#primaryimage","url":"https:\/\/image.theregister.com\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683","contentUrl":"https:\/\/image.theregister.com\/5284669.jpg?imageId=5284669&amp;x=0&amp;y=0&amp;cropw=100&amp;croph=71.67&amp;panox=0&amp;panoy=0&amp;panow=100&amp;panoh=71.67&amp;width=1200&amp;height=683"},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/attacker-phished-way-into-us-defense-suppliers-microsoft-365-account\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Security","item":"https:\/\/www.threatshub.org\/blog\/tag\/security\/"},{"@type":"ListItem","position":3,"name":"Attacker phished way into US defense supplier&#8217;s Microsoft 365 account"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/61228","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=61228"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/61228\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=61228"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=61228"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=61228"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}