# Microsoft 365 Phishing Bypasses MFA to Hijack Accounts for Payroll Data

Attackers used adversary-in-the-middle phishing to hijack Microsoft 365 accounts, bypassing multi-factor authentication and intercepting payroll and finance-related emails. The campaign targeted specific users to enable wire fraud and business email compromise. This underscores the risk of AitM attacks against common cloud email services.

**Importance:** 3/5

## Sources

### Security
- [The Hacker News](https://thehackernews.com/2026/08/microsoft-365-aitm-phishing-hijacks.html) — Fri, 07 Aug 2026 16:08:27 +0530