Skip to main content

Microsoft seizes websites linked to growing phishing subscription service

Errol Weiss, Health-ISAC CSO, quoted on phishing attacks next to a Reuters article on Microsoft seizing phishing sites.

Microsoft Inc said on Tuesday that it seized nearly 340 websites tied to a rapidly growing Nigerian-based service that allowed users to carry out phishing operations that stole at least 5,000 Microsoft user credentials. Microsoft said the seizure of the websites occurred over a period of days earlier this month.

Errol Weiss, chief security officer of the Health Information Sharing & Analysis Center (Health-ISAC), which provides cybersecurity services to member health organizations and is a co-plaintiff alongside Microsoft, said Raccoon0365 has been linked to successful credential harvesting through phishing campaigns at at least five unnamed healthcare organizations, while targeting 25 health sector organizations overall.

Once hackers gain that access, any number of things can happen, Weiss said.
“So many of the attacks start because somebody gave up their user name and password to a bad guy,” Weiss said in an interview. “Once that cybercriminal has access to the network, then it’s just up to the imagination in terms of what comes next and how they monetize it.”

Read the article in Reuters. Click Here