Gulfnews
Credential Phishing Threats Surge in UAE Amid Evolving Attack Techniques
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Credential phishing has become a leading cyber threat in the UAE, with over 75% of cyber breaches stemming from phishing emails or fraudulent messages. The UAE Cybersecurity Council reports a significant rise in identity-based cybercrime over the past year. Cybercriminals are increasingly using sophisticated methods such as device code phishing, which exploits legitimate authentication flows to capture tokens, allowing persistent access even after password changes. This evolution in attack methods poses a serious risk, as compromised accounts are often used to launch further attacks on colleagues and partners. Microsoft 365, which dominates the business market, is a primary target for these attacks, as access to a single account can lead to extensive data breaches. Experts emphasize the need for heightened awareness and security measures to combat these threats effectively.
Key Points: • Over 75% of cyber breaches in the UAE originate from phishing attacks. • Device code phishing is a growing threat, exploiting legitimate authentication processes. • Compromised accounts are used for secondary attacks, impacting entire business ecosystems.