THREAT OPS › Threat News › How legitimate cloud platforms enable phishers to bypass MFA
How legitimate cloud platforms enable phishers to bypass MFA
<p><img alt="" class="attachment-securelist-huge-promo size-securelist-huge-promo wp-post-image" height="400" src="https://media.kasperskycontenthub.com/wp-content/uploads/sites/43/2026/08/03153602/cloud_phishing-scaled-1-990x400.jpg" width="990" /></p><p>Threat actors are increasingly exploiting legitimate cloud services to evade detection and streamline the deployment of their scam infrastructur
MITRE ATT&CK techniques
Indicators of compromise
- https://turl
- https://infogram.com/1p0j7vy3kxp0dvuew7jvrxql6ncnzzrd36vurl
- https://www.kaspersky.com/enterprise-security/mail-server-security?icid=gl_sl_post-ksms_sm-team_b90744579ae685d9url
- https://www.kaspersky.com/premium?icid=gl_sl_post-kprem_sm-team_713579ad9bcca9ffurl
- user@business.comemail
- media.kasperskycontenthub.comdomain
- e.comdomain
- github.iodomain
- ipfs.iodomain
- wixstudio.comdomain
- webflow.iodomain
- azurewebsites.netdomain
Original source: https://securelist.com/cloud-platforms-in-phishing/120832/