Microsoft is warning of a widespread credential phishing campaign that leverages open redirector links in email communications as a vector to trick users into visiting malicious websites while effectively bypassing security software. Microsoft said it observed at least 350 unique phishing domains as part of the campaign. The campaign’s effective use of convincing social engineering lures that purport to be notification messages from apps like Office 365 and Zoom, a well-crafted detection evasion technique, and a durable infrastructure to carry out the attacks.”]
Source: https://thehackernews.com/2021/08/microsoft-warns-of-widespread-phishing.html