// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE BRC-wedgDTG 0600Z
ColdRecon / Breach Radar / Microsoft
Breach Record

Microsoft

DISCLOSED 2026-08-05 · STOLEN CREDS

Three phishing-as-a-service (PhaaS) kits are actively targeting US organizations to steal Microsoft 365 credentials by bypassing multi-factor authentication (MFA). The kits use adversary-in-the-middle (AiTM) techniques to intercept session tokens, allowing attackers to access accounts even when MFA is enabled. This poses a significant threat to endpoint security as...

The record

What we know

Disclosed
2026-08-05
Attack vector
Stolen Creds
Sources

Cited reporting

Similar vector · recent

Other stolen creds breaches on file

This page is the permanent ColdRecon entry for the Microsoft disclosure. It updates if new public reporting emerges. All tracked breaches →

Microsoft just lived through this. Your next prospect doesn't have to.

ColdRecon turns every disclosed breach into a daily intelligence brief from the seller's seat — normalized to the factors that move a deal, written in the Handler's voice. Request clearance and the first lands tomorrow at 0600.

Request Clearance →