Close Menu
    Main Menu
    • Home
    • News
    • Tech
    • Robotics
    • ML & Research
    • AI
    • Digital Transformation
    • AI Ethics & Regulation
    • Thought Leadership in AI

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Rolemantic Uncensored Chat: My Unfiltered Ideas

    October 15, 2025

    Hacker attackieren Vergabeportal für öffentliche Aufträge

    October 15, 2025

    Greatest robotic vacuum deal: Save $355 on Ecovacs Deebot X9 Professional Omni

    October 15, 2025
    Facebook X (Twitter) Instagram
    UK Tech InsiderUK Tech Insider
    Facebook X (Twitter) Instagram
    UK Tech InsiderUK Tech Insider
    Home»AI Ethics & Regulation»Microsoft Shuts Down RaccoonO365 Phishing Ring, Seizes 338 Web sites
    AI Ethics & Regulation

    Microsoft Shuts Down RaccoonO365 Phishing Ring, Seizes 338 Web sites

    Declan MurphyBy Declan MurphySeptember 17, 2025No Comments4 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    Microsoft Shuts Down RaccoonO365 Phishing Ring, Seizes 338 Web sites
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link


    Microsoft’s Digital Crimes Unit (DCU) has taken down a cybercrime service referred to as RaccoonO365. The corporate introduced on September 16 that, via a court docket order granted by the Southern District of New York, it seized 338 web sites linked to the RaccoonO365 operation, which was a preferred device for criminals trying to steal consumer data.

    RaccoonO365, which Microsoft tracks as Storm-2246, supplied a subscription service that permit anybody, even these with out technical abilities, steal Microsoft 365 usernames and passwords, often known as credentials.  The service supplied phishing kits, that are ready-to-use instruments that mimic official Microsoft communications to trick folks into giving up their data. 

    Since July 2024, the service has been used to steal at the very least 5,000 Microsoft credentials from victims in 94 international locations, together with a large tax-themed marketing campaign that focused over 2,300 organisations in the US. Whereas not each theft results in a full system break-in, the massive variety of assaults exhibits the scale of the issue.

    A Menace to Public Well being

    The consequences of RaccoonO365 have reached past easy information theft. Some of the worrying makes use of of the service was a large-scale phishing marketing campaign that focused at the very least 20 US healthcare organisations.

    Since phishing emails usually result in extra severe assaults like ransomware, these incidents put public security in danger by delaying affected person companies and exposing delicate information. For this reason the DCU partnered with Well being-ISAC, a non-profit centered on cybersecurity for the well being sector, to file the lawsuit.

    RaccoonO365 Login Web page and Subscription Plans (Credit score: Microsoft)

    The Man Behind the Crime

    In the course of the investigation, the DCU recognized the operation’s chief as Joshua Ogundipe, a person from Nigeria. He and his companions labored collectively to create, promote, and help the service. They offered their companies on the messaging app Telegram, the place that they had greater than 850 members and acquired at the very least $100,000 in cryptocurrency funds.

    The group additionally lately started promoting a brand new AI-powered service, RaccoonO365 AI-MailCheck, designed to make their assaults much more efficient. Microsoft believes that Ogundipe wrote many of the laptop code for RaccoonO365.

    Microsoft Shuts Down RaccoonO365 Phishing Ring, Seizes 338 Websites
    Promotion of RaccoonO365 AI-MailCheck (Credit score: Microsoft)

    The group was cautious to cover their identities, however a mistake revealed a secret cryptocurrency pockets, which helped the DCU join Ogundipe to the operation. The details about Ogundipe has now been despatched to worldwide regulation enforcement for additional motion.

    Working Collectively to Battle a World Drawback

    The operation exhibits how cybercrime is now accessible and scalable to just about anybody. As Microsoft notes, “Cybercriminals don’t should be subtle to trigger widespread hurt,” nevertheless, this motion sends “a transparent sign that Microsoft and its companions will stay persistent in going after those that goal our techniques.”

    To confront this, Microsoft is utilizing new strategies like blockchain evaluation device Chainalysis Reactor that traces cryptocurrency funds and identifies criminals. The corporate additionally regularly collaborates with safety companies like Cloudflare to shortly take down malicious web sites.

    Professional Commentary:

    Including to the technical options, specialists spotlight the essential position of human defences on this combat. Erich Kron, a safety consciousness advocate at KnowBe4, commented that “electronic mail phishing continues to be a serious risk that organisations face every day.” He defined that phishing companies make it far simpler for criminals who aren’t tech-savvy to get into the “cybercrime recreation.”

    Kron identified that credential theft might be particularly harmful as a result of “folks are likely to reuse passwords throughout totally different accounts and companies,” that means an attacker who steals one password would possibly acquire entry to many extra accounts.

    To counter this, he mentioned, organisations want a “well-established human threat administration (HRM) program in place” to teach customers on the way to spot pretend login pages and perceive the risks of reusing passwords. In the end, he advises, “MFA needs to be deployed wherever doable to make issues even harder for attackers within the occasion they do steal somebody’s credentials.”



    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Declan Murphy
    • Website

    Related Posts

    Hacker attackieren Vergabeportal für öffentliche Aufträge

    October 15, 2025

    Microsoft Limits IE Mode in Edge After Chakra Zero-Day Exercise Detected

    October 15, 2025

    Chinese language Hackers Exploit ArcGIS Server as Backdoor for Over a 12 months

    October 14, 2025
    Top Posts

    Evaluating the Finest AI Video Mills for Social Media

    April 18, 2025

    Utilizing AI To Repair The Innovation Drawback: The Three Step Resolution

    April 18, 2025

    Midjourney V7: Quicker, smarter, extra reasonable

    April 18, 2025

    Meta resumes AI coaching utilizing EU person knowledge

    April 18, 2025
    Don't Miss

    Rolemantic Uncensored Chat: My Unfiltered Ideas

    By Amelia Harper JonesOctober 15, 2025

    Rolemantic makes no effort to cover what it’s about—it’s an uncensored AI chat platform that…

    Hacker attackieren Vergabeportal für öffentliche Aufträge

    October 15, 2025

    Greatest robotic vacuum deal: Save $355 on Ecovacs Deebot X9 Professional Omni

    October 15, 2025

    Futures of Work ~ Reflections and suggestions from the second U.Ok. Impartial Anti-Slavery Commissioner

    October 15, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    UK Tech Insider
    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms Of Service
    • Our Authors
    © 2025 UK Tech Insider. All rights reserved by UK Tech Insider.

    Type above and press Enter to search. Press Esc to cancel.