Cyberattackers are passing around fake Microsoft account emails under the pretense of unusual sign-in activity to trick users into handing over their credentials. Bleeping Computer spotted the phishing emails and noted that the actors took their time to make the messages look convincing. The emails arrived with the same look and information fields as official Microsoft notifications and the same sender email address as the one used in legitimate Microsoft correspondence. Cybercriminals have targeted users Microsoft credentials many times in the past.”]