#SEC #News https://www.bleepingcomputer.com/news/security/ransomware-access-broker-steals-accounts-via-microsoft-teams-phishing/
Nevertheless, the issue was also exploited by APT29, the Russian Foreign Intelligence Service (SVR) hacking division, in attacks against dozens of organizations, including government agencies worldwide.
While Microsoft did not provide details on the end goal of Storm-0324's attacks this time around, APT29's attacks aimed to steal the targets' credentials after tricking them into approving multifactor authentication (MFA) prompts.