In this episode of the Microsoft Threat Intelligence Podcast, Microsoft Threat Intelligence Director⁠ Elliot Volkman is joined by Microsoft Principal Threat Intelligence Analyst Crane Hassold to explore how phishing and social engineering attacks are changing beyond email. They discuss the rise of QR code phishing, Microsoft Teams scams, SMS-based attacks, and why attackers continue to follow wherever people communicate.

Crane also shares practical security recommendations for organizations and explains how Microsoft's disruption of the Tycoon2FA phishing-as-a-service platform led to a dramatic decline in malicious activity while reshaping the broader phishing landscape. 

In this episode you’ll learn:     

How phishing attacks are evolving beyond email

The security basics every organization should prioritize

How attackers are exploiting Microsoft Teams and SMS

Some questions we ask:    

What are you seeing in today's social engineering and phishing landscape?

How impactful was the Tycoon 2FA disruption?

Has Tycoon activity shifted elsewhere after the disruption?

Resources: 

View Elliot Volkman on LinkedIn 

View Crane Hassold on LinkedIn 

Related Microsoft Podcasts:

Afternoon Cyber Tea with Ann Johnson

The BlueHat Podcast

Uncovering Hidden Risks    

Discover and follow other Microsoft podcasts at microsoft.com/podcasts 

Get the latest threat intelligence insights and guidance at Microsoft Security Insider

The Microsoft Threat Intelligence Podcast is produced by Microsoft, Hangar Studios and distributed as part of N2K media network.

Podden och tillhörande omslagsbild på den här sidan tillhör Microsoft. Innehållet i podden är skapat av Microsoft och inte av, eller tillsammans med, Poddtoppen.