Microsoft has unveiled details of a deceptive social engineering campaign, in which the operators proceeded to change their obfuscation and encryption devices every 37 days on average. The campaign also includes relying on Morse code, cover their routes, and reap secretly the credentials of users. This kind of phishing attack is quite unique in nature and the lengths attackers exert to encode the HTML file so that they can easily bypass security controls. The Microsoft Defender for Office 365 discovered the malicious emails from this phishing campaign through different, multi-layered, and cloud-based machines.”]

