Close Menu
AIToday7

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Brief independent investigation of agents’ behavior, reasoning and collaboration in the OpenAI / Hugging Face hacking incident

    August 27, 2026

    Fake US thinktank set up and funded by Israel sought to game AI for propaganda

    August 27, 2026

    Medical Readiness Command, Europe G-6 Information Technology Team wins 2026 MEDCOM Mercury Award for HIT Team of the Year

    August 27, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Brief independent investigation of agents’ behavior, reasoning and collaboration in the OpenAI / Hugging Face hacking incident
    • Fake US thinktank set up and funded by Israel sought to game AI for propaganda
    • Medical Readiness Command, Europe G-6 Information Technology Team wins 2026 MEDCOM Mercury Award for HIT Team of the Year
    • Corgi built its name insuring AI startups. Its new carrier targets dry cleaners, salons and more
    • 5 Of The Best UGREEN Gadgets You Can Buy In 2026
    • Three UK airports hit by cyber-attack with data of 8.7m customers accessed
    • How to advertise on ChatGPT: A step-by
    • The Data Center Backlash Is a Rare Bright Spot in American Politics
    Facebook X (Twitter) Instagram Pinterest Vimeo
    AIToday7
    • Home
    • AI News
    • Tech News
    • AI Guides
    • Chatbots
    • Cybersecurity
    • Gadgets
    • More
      • Generative AI
      • Startups
    AIToday7
    Home»Cybersecurity»Hackers abuse Microsoft Teams in ransomware campaign through fake IT support
    Cybersecurity

    Hackers abuse Microsoft Teams in ransomware campaign through fake IT support

    aitoday7By aitoday7July 31, 2026No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Hackers abuse Microsoft Teams in ransomware campaign through fake IT support
    Share
    Facebook Twitter LinkedIn Pinterest Email
    <img src="https://aitoday7.com/wp-content/uploads/2026/07/https-2F-2Fmedia.zenfs_.com-2Fen-2Fcybersecurity_dive_871-2F7c93168779f2c4ae8dff6e222f6fe2df.jpg” alt=”Microsoft AI antitrust concerns”>
    Co-founder and former CEO of Microsoft Bill Gates steps down from Microsoft board to spend more time on the Bill and Melinda Gates Foundation.

    This story was originally published on Cybersecurity Dive. To receive daily news and insights, subscribe to our free dailyCybersecurity Dive newsletter.

    Dozens of North American companies have been targeted in a social engineering campaign that abuses Microsoft Teams to deploy ransomware, according to a report by cybersecurity firm Sophos.

    A threat group, tracked as STAC4749, has initiated chats or calls through Microsoft Teams under the guise of providing help desk or IT support to companies in the U.S. and Canada. 

    After initiating a remote session through Microsoft Quick Assist or the cloud-based RemSupp tool, hackers deploy PowerShell in order to establish persistence and execute malicious payloads. 

    The attacks come months after a Rapid7 report of Iran-linked MuddyWater conducting a false-flag campaign where they presented themselves as financially motivated actors. Sophos researchers explored possible links, but they believe the STAC4749 attacks are actually linked to a criminal actor.

    “Based on the evidence we observed, this activity is most consistent with a financially motivated cybercriminal operation rather than state-sponsored actors,” said Morgan Demboski, threat intelligence analyst at Sophos. “Data was stolen in a subset of intrusions, but we did not observe behavior typically associated with espionage-focused actors, like long-term persistence, efforts at covert access, or targeted intelligence collection.”

    The attacks were consistent with double-extortion operations that prioritize speed

    In at least three cases, the hackers deployed Chaos ransomware on a compromised system. Researchers said in one of the cases, the time between initial access to deployment of ransomware was 17 hours, which is consistent with prior Chaos cases. 

    The observed attacks ran between February and June, targeting organizations in the services, manufacturing, energy, construction and engineering sectors.

    Chaos ransomware-as-a-service has been active since February 2025 and has been linked to former members of BlackSuit ransomware Several of the tactics used in the recent campaign align with prior attacks connected to Chaos, including the use of Microsoft Teams along with Quick Assist for vishing. Prior attacks have also employed DWAgent and AnyDesk for lateral movement

    Post Views: 4

    abuse hackers Microsoft ransomware Teams
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleHow Med Spas Get Recommended by ChatGPT: New Guide Released
    Next Article 5 Best Bedroom Gadgets for Men in 2026 That Actually Earn Their Space on Your Nightstand
    aitoday7
    • Website

    Related Posts

    Cybersecurity

    Three UK airports hit by cyber-attack with data of 8.7m customers accessed

    August 27, 2026
    Cybersecurity

    2.8M affected in Baylor Genetics breach involving medical data

    August 27, 2026
    Cybersecurity

    How To Take Prevention to the Web Layer

    August 26, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Brief independent investigation of agents’ behavior, reasoning and collaboration in the OpenAI / Hugging Face hacking incident

    August 27, 20260 Views

    Fake US thinktank set up and funded by Israel sought to game AI for propaganda

    August 27, 20260 Views

    Medical Readiness Command, Europe G-6 Information Technology Team wins 2026 MEDCOM Mercury Award for HIT Team of the Year

    August 27, 20260 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    Chatbots

    OpenAI bets on families as ChatGPT goes deeper into households

    aitoday7July 11, 2026
    Generative AI

    MUSIC COMMUNITY INTRODUCES NEW LABELING PROGRAM TO DISTINGUISH GENERATIVE AI IN SOUND RECORDINGS

    aitoday7July 11, 2026
    AI News

    Safe from AI: which jobs will help you thrive in the future?

    aitoday7July 11, 2026

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Brief independent investigation of agents’ behavior, reasoning and collaboration in the OpenAI / Hugging Face hacking incident

    August 27, 20260 Views

    Fake US thinktank set up and funded by Israel sought to game AI for propaganda

    August 27, 20260 Views

    Medical Readiness Command, Europe G-6 Information Technology Team wins 2026 MEDCOM Mercury Award for HIT Team of the Year

    August 27, 20260 Views
    Our Picks

    OpenAI bets on families as ChatGPT goes deeper into households

    July 11, 2026

    MUSIC COMMUNITY INTRODUCES NEW LABELING PROGRAM TO DISTINGUISH GENERATIVE AI IN SOUND RECORDINGS

    July 11, 2026

    Safe from AI: which jobs will help you thrive in the future?

    July 11, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Get In Touch
    • Disclaimer
    • Privacy Policy
    • Terms and Conditions
    © 2026 AIToday7. All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.