Microsoft seizes websites linked to growing phishing subscription service

Microsoft Inc said on Tuesday that it seized nearly 340 websites tied to a rapidly growing Nigerian-based service that allowed users to carry out phishing operations that stole at least 5,000 Microsoft user credentials. Microsoft said the seizure of the websites occurred over a period of days earlier this month.
Errol Weiss, chief security officer of the Health Information Sharing & Analysis Center (Health-ISAC), which provides cybersecurity services to member health organizations and is a co-plaintiff alongside Microsoft, said Raccoon0365 has been linked to successful credential harvesting through phishing campaigns at at least five unnamed healthcare organizations, while targeting 25 health sector organizations overall.
Once hackers gain that access, any number of things can happen, Weiss said.
“So many of the attacks start because somebody gave up their user name and password to a bad guy,” Weiss said in an interview. “Once that cybercriminal has access to the network, then it’s just up to the imagination in terms of what comes next and how they monetize it.”
Read the article in Reuters. Click Here
- Related Resources & News
- Healthcare finance trends for 2026: A mid-year update
- Threat Actor Playbook: Conversational Social Engineering in Care Settings
- The Human Risk Layer of AI
- Cybersecurity in the Lab
- Operation Vital Signs: First-of-its-kind exercise stress tests health sector cyber resilience
- What’s in America’s Code?
- Introducing AI Agents to Your Identity Fabric
- Cyberattacks on Healthcare Sector Jumped 14% in First Half of 2026
- What do cybersecurity leaders want in staff? These 3 skills beat certifications and experience
- Continuous attack surface monitoring and sophisticated social engineering assessment