Breaking 18:48 Trump cites Ceuta migration crisis in warning over future U.S. border policy 17:15 US-China Robot Race Intensifies as Washington Tightens Restrictions on Advanced Robotics 16:49 Bryan Johnson questions his extreme quest for longevity 15:15 Elon Musk comments on Ceuta migration surge, sparking debate over immigration policies 14:51 OpenAI cuts AI model prices as global competition intensifies 13:25 U.S. Weekly Jobless Claims Rise Slightly as Labor Market Remains Resilient 13:10 Zoox Receives Regulatory Approval to Expand Its Autonomous Robotaxi Fleet 12:46 US safety regulator investigates 1.2 million Tesla vehicles over suspension concerns 12:30 Amazon rally lifts Nasdaq futures despite Apple sell-off on supply concerns 12:15 Chevron posts strongest quarterly profit in six years as energy markets face major disruption 12:12 Pentagon Signs Landmark Contract to Expand Patriot Missile Production 11:22 U.S. Considers $100,000 Fee for International Graduates Seeking Post-Study Work 10:50 Trump Says Witkoff and Kushner Will Visit Kyiv Soon to Advance Ukraine Peace Efforts 10:32 Elon Musk Plans Major Political Spending Ahead of U.S. Midterm Elections 10:18 White House criticizes Spain’s migration policies amid Ceuta border crisis 10:16 Apple shares fall as supply constraints raise concerns over growth and iPhone demand 09:09 Meta expands AI features to Threads direct messages 08:15 Proposed Gaza disarmament plan raises hopes for a new phase of governance 08:00 AI-powered recommendations increase user engagement on Instagram

Scammers send phishing emails from official Microsoft address

Friday 22 May 2026 - 08:31
By: Dakir Madiha
Scammers send phishing emails from official Microsoft address

Phishing operators have exploited a vulnerability in Microsoft’s email notification systems to send fraudulent messages from a legitimate internal address used for security alerts and authentication codes. The abuse involves the address msonlineservicesteam@microsoftonline.com, which normally delivers two-factor authentication codes and account notifications to hundreds of millions of users worldwide. The misuse gives attackers a powerful way to bypass user suspicion by appearing as trusted system communication.

The attack appears to rely on creating or compromising Microsoft accounts and leveraging them to trigger automated system emails that carry fraudulent content. In some cases, attackers replicate security alerts warning of unauthorized transactions. In others, messages direct users to external links embedded in the email body. Because the messages originate from a legitimate Microsoft-controlled infrastructure, they often pass basic authentication checks and appear authentic to recipients.

Security researchers have also documented related techniques involving Microsoft’s identity management system, where attackers manipulate tenant configuration fields to inject deceptive text into automated notifications. This method can alter subject lines and message content in system-generated emails, including fake purchase confirmations or cryptocurrency-related alerts. The result is a hybrid form of phishing where legitimate infrastructure is used to generate convincing fraudulent communications at scale.

A cybersecurity monitoring group has reported that the same Microsoft notification address has been abused for months to distribute spam and phishing messages. The group has flagged the issue to Microsoft and warned that such levels of customization in automated notification systems create structural risks for abuse. Microsoft has acknowledged inquiries but has not publicly detailed corrective measures. The incident reflects a broader trend in which attackers increasingly target trusted enterprise communication systems rather than relying on external spoofed domains. Users are advised to avoid clicking links in unexpected security emails and to verify account activity directly through official platforms.


  • Fajr
  • Sunrise
  • Dhuhr
  • Asr
  • Maghrib
  • Isha

This website, walaw.press, uses cookies to provide you with a good browsing experience and to continuously improve our services. By continuing to browse this site, you agree to the use of these cookies.