Feed›Social Engineering›New Helix vishing group emerges in SharePoint data theft att...
Social EngineeringBleeping Computer
6.8 — HIGH

New Helix vishing group emerges in SharePoint data theft attacks

📅 9 July 2026 at 17:08 UTC📰 Bleeping ComputerView original source ↗
New Helix vishing group emerges in SharePoint data theft attacks

A new data-extortion group called Helix is using identity-focused tactics such as voice phishing (vishing), device code phishing, and multi-factor authentication (MFA) abuse to steal data from SharePoint environments. [...]

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

A new Helix group is using vishing, device code phishing, and MFA abuse to steal data from SharePoint environments, targeting organizations with identity-focused tactics.

⚙️Technical Details
Affected Systems
SharePoint
Attack Vectors
vishingdevice-code phishing
💥Impact Assessment
Severity: high
Who Is at Risk
organizations targeted by Helix groupSeverity: high
🛡️Recommended Actions
1disable device code authentication where possible
2restrict SharePoint access to only managed devices
3block exchanges with newly registered domains

Read the full article

This is a curated summary. The complete article is available at Bleeping Computer.

Read on Bleeping Computer ↗
← Back to feed