Companies in Germany are facing a new wave of cyberattacks. The State Criminal Police Office of North Rhine-Westphalia has issued a warning. Cybercriminals are targeting Microsoft 365, particularly email and document management, as a way to launch their attacks.
“Unknown perpetrators take over email accounts and then send messages on behalf of the affected companies. These emails contain dangerous attachments or links. The emails look genuine because they do not contain any language errors, but often contain real previous conversations. As soon as a recipient clicks on the links, the IT system can be immediately attacked and data loss or theft as well as other attacks, such as phishing attacks, can occur” the press release reads.
By infosecbulletin
/ Saturday , September 12 2026
German law enforcement agencies are using features built into apps such as WhatsApp to monitor people’s messages without breaking their...
Read More
By infosecbulletin
/ Friday , September 11 2026
GitLab has released an important security update to fix two serious problems. These issues could allow unauthorized file access and...
Read More
By infosecbulletin
/ Thursday , September 10 2026
Palo Alto Networks has revealed a serious flaw in PAN-OS. It may let a remote attacker without a password run...
Read More
By infosecbulletin
/ Thursday , September 10 2026
Check Point Software has revealed and fixed two major VPN flaws, CVE-2026-85102 and CVE-2026-85103. Both have a top CVSS score...
Read More
By infosecbulletin
/ Thursday , September 10 2026
Cisco has said that a serious security flaw CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being used...
Read More
By infosecbulletin
/ Thursday , September 10 2026
A Russian-speaking hacker has used artificial intelligence like never before. They sent out hundreds of AI agents to find and...
Read More
By infosecbulletin
/ Thursday , September 10 2026
Six Chinese AI companies ran large-scale attacks on American AI models since late 2024, according to U.S. cybersecurity and intelligence...
Read More
By infosecbulletin
/ Wednesday , September 9 2026
An unknown security expert called Nightmare Eclipse has drops a new Microsoft Defender flaw called "ShieldCrash" right after Microsoft released...
Read More
By infosecbulletin
/ Wednesday , September 9 2026
cPanel has shared CVE-2026-67401, a serious SQL injection flaw in EmailTrack. This flaw could allow attackers with permission to take...
Read More
By infosecbulletin
/ Wednesday , September 9 2026
An ongoing attack is focused on FortiGate firewalls. Hackers use a serious flaw to install a special Node.js remote access...
Read More
According to the press release “many companies are currently affected by cyber attacks on Office 365 (email and document management). These attacks also pose a risk to companies connected to the corporate network as well as to their customers and communication partners.”
The police say that cybercriminals often update their dangerous attachments, which may not always be detected by existing virus scanners. The press release does not specify the techniques or procedures used by hackers or provide detailed countermeasures.
Microsoft has updated its guidelines on how users can identify if their email account has been hacked and what they should do about it. Signs of a compromised account may include frequent password changes, missing or deleted emails, unexpected email forwarding, and inability to send emails.
Source: Press release of the State Criminal Police Office of North Rhine-Westphalia (LKA NRW), Cybernews