Skip to content
Energy Sector Targeted by Phishing Campaign via Microsoft SharePoint

Energy Sector Targeted by Phishing Campaign via Microsoft SharePoint

First seen 23 Jan 2026, 22:10 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

Unknown attackers are exploiting Microsoft SharePoint file-sharing services to target multiple energy-sector organizations. The campaign involves harvesting user credentials, taking over corporate inboxes, and sending hundreds of phishing emails from compromised accounts to contacts both inside and outside these organizations. The attackers likely gained initial access using previously compromised email addresses.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 213d ago How this analysis works

More articles in this cluster (3)