#payrollpirate

2025-10-13

"Payroll Pirates" are actively targeting employees in US institutions of higher education to plunder staff wages without touching the employer's systems directly.- reports Microsoft Threat Intelligence.

Threat actor Storm-2657 is using phishing emails designed to harvest multi-factor authentication (MFA) codes to gain unauthorized access to employee profiles and divert salary payments to attacker-controlled accounts. microsoft.com/en-us/security/b #Hackers #CyberAttack #MFA #Phishing #CyberSecurity #Microsoft #Storm2657 #PayrollPirate #Security

Payroll Pirates Attack Flow
2025-10-11

#Microsoft warns of new “Payroll Pirate” #scam stealing employees’ direct deposits

Microsoft is warning of an active scam that diverts employees' #paycheck payments to attacker-controlled accounts after first taking over their profiles on #Workday or other cloud-based #HR services

#PayrollPirate , gains access to victims’ HR portals by sending them #phishing emails that trick the recipients into providing their #credentials for logging in to the cloud account
#security

arstechnica.com/security/2025/

2025-10-09

Universities are under attack! Cybercriminals are using ultra-realistic phishing to hijack HR emails and reroute payroll funds. Could your institution be next?

thedefendopsdiaries.com/univer

#payrollpirate
#phishingattacks
#universitycybersecurity
#mfaexploits
#businessemailcompromise

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst