Social EngineeringBleeping Computer
6.8 — HIGH
New Helix vishing group emerges in SharePoint data theft attacks
A new data-extortion group called Helix is using identity-focused tactics such as voice phishing (vishing), device code phishing, and multi-factor authentication (MFA) abuse to steal data from SharePoint environments. [...]
🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview
A new Helix group is using vishing, device code phishing, and MFA abuse to steal data from SharePoint environments, targeting organizations with identity-focused tactics.
⚙️Technical Details
Affected Systems
SharePoint
Attack Vectors
vishingdevice-code phishing
💥Impact Assessment
Severity: high
Who Is at Risk
organizations targeted by Helix groupSeverity: high
🛡️Recommended Actions
1disable device code authentication where possible
2restrict SharePoint access to only managed devices
3block exchanges with newly registered domains
Read the full article
This is a curated summary. The complete article is available at Bleeping Computer.
