Microsoft 365 users targeted in massive password spray attack with 81 million login attempts; Huntress reports at least 78 successful breaches.
HuntressLSHIY LLC

Microsoft 365 users targeted in massive password spray attack with 81 million login attempts; Huntress reports at least 78 successful breaches.

A massive password spray attack targeting Microsoft 365 users resulted in 81 million login attempts over two weeks, with Huntress reporting at least 78 successful breaches. The attack exploited flaws in multi-factor authentication and relied on previously exposed credentials, highlighting vulnerabilities in corporate security measures.

Cybersecurity Insiders Cybersecurity Insiders+2 sources1h ago
CuriousCats Full Story

A massive password spray attack targeting Microsoft 365 users has raised alarms as hackers made 81 million login attempts between June 12 and 26, with Huntress reporting at least 78 successful breaches. The attack originated from a single source, an IPv6 address range controlled by internet provider LSHIY LLC.3

The attackers exploited older protocols like ROP (Resource Owner Password Credentials) to bypass multi-factor authentication (MFA), which many affected organizations had in place. This highlights a significant flaw in corporate security measures, as the attack took advantage of previously exposed credentials and vulnerabilities in MFA configurations.4

Huntress had been monitoring these spray attacks and noted a gradual increase starting June 12, culminating in a sudden spike on June 22, when 30 customers were affected. The attack's success underscores the need for organizations to reassess their security protocols, as legacy authentication methods are proving inadequate against such sophisticated threats.2

Experts emphasize that true security cannot be achieved by merely adding more conditional rules or relying on users to identify phishing attempts. Instead, organizations must adopt more robust security measures to protect against evolving cyber threats.

Key Insight
“Microsoft 365 users have fallen victim to a significant password spray attack, with 81 million login attempts reported. Despite having multi-factor authentication policies, many organizations were compromised due to flaws in their configurations.”
CuriousCats studied:
1
Cybersecurity InsidersCybersecurity Insiders
“the recent news that hackers hit with 81 million login attempts in just two weeks proves that legacy authentication is failing.”
Cybersecurity Insiders →
2
ComputerworldComputerworld
“The attack exploited previously exposed credentials and flaws in enterprises’ multi-factor authentication configurations.”
Computerworld →
3
csoonline.comcsoonline.com
“The attack exploited previously exposed credentials and flaws in enterprises’ multi-factor authentication configurations.”
csoonline.com →
Ask CuriousCats
What is a password spray attack?
Who reported the Microsoft 365 breaches?
Why did many organizations get compromised?
Are other services experiencing similar attacks?
How do Microsoft 365 security measures compare to others?
Become the most informed
person in the room.
Personal AI agents scanning 100,000+ sources — news, video, and social media — delivered every morning.
Download the App Go to CuriousCats.ai
🇺🇸 US🇮🇳 India🇬🇧 UK🇨🇦 Canada🇸🇬 Singapore
One story brought you here.
CuriousCats brings you everything else worth knowing.
Get CuriousCats