BR100 Decreased By (-0.75%)
BR30 Decreased By (-0.82%)
KSE100 Decreased By (-0.68%)
KSE30 Decreased By (-0.8%)
AGHA 6.52 Decreased By ▼ -0.17 (-2.54%)
BECO 4.32 Decreased By ▼ -0.05 (-1.14%)
BML 57.04 Decreased By ▼ -2.19 (-3.7%)
BOP 29.25 Decreased By ▼ -0.55 (-1.85%)
CNERGY 12.39 Decreased By ▼ -0.34 (-2.67%)
CSIL 5.14 Decreased By ▼ -0.03 (-0.58%)
FCCL 52.07 Decreased By ▼ -0.09 (-0.17%)
FFL 14.01 Increased By ▲ 0.01 (0.07%)
FNEL 1.16 Decreased By ▼ -0.03 (-2.52%)
KEL 5.96 Decreased By ▼ -0.08 (-1.32%)
KOSM 5.38 Decreased By ▼ -0.24 (-4.27%)
LOTCHEM 26.60 Increased By ▲ 1.01 (3.95%)
MLCF 90.95 Increased By ▲ 0.05 (0.06%)
NBP 160.74 Decreased By ▼ -1.27 (-0.78%)
NCPL 51.23 Decreased By ▼ -1.49 (-2.83%)
NPL 55.99 Increased By ▲ 0.25 (0.45%)
OGDC 308.66 Decreased By ▼ -7.25 (-2.29%)
PACE 9.57 Decreased By ▼ -0.15 (-1.54%)
PAEL 33.73 Decreased By ▼ -0.33 (-0.97%)
PIBTL 13.58 Increased By ▲ 0.07 (0.52%)
PPL 218.35 Decreased By ▼ -1.94 (-0.88%)
PRL 91.12 Decreased By ▼ -3.20 (-3.39%)
PTC 60.09 Decreased By ▼ -0.15 (-0.25%)
SSGC 23.04 Decreased By ▼ -0.13 (-0.56%)
TBL 8.96 Decreased By ▼ -0.26 (-2.82%)
TELE 7.17 Decreased By ▼ -0.11 (-1.51%)
TPL 19.41 Decreased By ▼ -0.65 (-3.24%)
TPLP 11.80 Decreased By ▼ -0.10 (-0.84%)
TREET 22.25 Decreased By ▼ -0.82 (-3.55%)
TRG 55.22 Decreased By ▼ -1.27 (-2.25%)

ISLAMABAD: A leading cyber security company on Thursday warned Pakistani companies to beware of scam email campaigns involving attackers who send emails through Microsoft service links.

According to a report of the company issued here, Kaspersky experts have identified a scam email campaign. Attackers send emails that contain legitimate Microsoft service links to redirect users to fraudulent sites or to download malware. From August 1 to September 18, more than 31,000 emails with such links were blocked by Kaspersky solutions.

Earlier this year Kaspersky reported detecting a phishing campaign where attackers abused Microsoft’s authentication mechanism. Now Kaspersky experts explain how cyber criminals are exploiting the same technology, using another bait for the phishing: attackers sent victims emails disguised as an official Microsoft communication, urging them to follow the link to keep their credentials for the service updated or to sign electronic documents.

Spammers put a fake message in the name field on the Overview page, then create bogus users in the Users section with made up email addresses, display names and passwords. Then attackers log into the Microsoft My Account portal with the new credentials of the created bogus user and enter the victim’s real email address as a backup mailbox (used for password reset messages).

To establish a comprehensive defense against such threats, organizations should consider using robust email security solutions.

Copyright Business Recorder, 2026

Comments

200 characters remaining