First Known Malicious Microsoft Outlook Add-in Detected in the Wild
A malicious Microsoft Outlook add-in has been discovered in the wild. The attack, known as “AgreeToSteal,” exploits a vulnerability in the Office add-in’s supply chain, allowing hackers to steal thousands of credentials. According to Koi Security, an unknown attacker hijacked a legitimate add-in’s domain to serve a fake Microsoft login page, capturing user passwords and … Read more