Drooid Logo
Back to today’s briefing

Story perspectives

Massive Botnet Targets Microsoft 365 Accounts, Evades Security

2/24/2025

34 6

1 of 1

Story summary
  • A massive botnet of over 130,000 hacked devices is launching password-spraying attacks on Microsoft 365 accounts, cleverly evading multi-factor authentication. Tied to Chinese infrastructure, these attackers pose a significant threat. Organizations are urged to closely monitor non-interactive logins, update credentials, and shift away from Basic Authentication to bolster security before Microsoft phases it out in September 2025.