Source |
The Hacker News |
Identifiant |
8647040 |
Date de publication |
2025-02-05 18:33:00 (vue: 2025-02-05 14:08:20) |
Titre |
Cybercriminals Use Go Resty and Node Fetch in 13 Million Password Spraying Attempts |
Texte |
Cybercriminals are increasingly leveraging legitimate HTTP client tools to facilitate account takeover (ATO) attacks on Microsoft 365 environments.
Enterprise security company Proofpoint said it observed campaigns using HTTP clients Axios and Node Fetch to send HTTP requests and receive HTTP responses from web servers with the goal of conducting ATO attacks.
"Originally sourced from public
Cybercriminals are increasingly leveraging legitimate HTTP client tools to facilitate account takeover (ATO) attacks on Microsoft 365 environments.
Enterprise security company Proofpoint said it observed campaigns using HTTP clients Axios and Node Fetch to send HTTP requests and receive HTTP responses from web servers with the goal of conducting ATO attacks.
"Originally sourced from public |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
365 account are ato attacks attempts axios campaigns client clients company conducting cybercriminals enterprise environments facilitate fetch from goal http increasingly legitimate leveraging microsoft million node observed originally password proofpoint public receive requests responses resty said security send servers sourced spraying takeover tools use using web |
Tags |
Tool
|
Stories |
|
Move |
|