Azure AD — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
9
occurrences
First Seen
February 6, 2026
Last Seen
July 20, 2026

Azure AD is a technology platform tracked across 8 threat clusters and 9 intelligence report mentions on ThreatCluster. First observed February 6, 2026; most recent activity July 20, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • New HollowGraph Malware Hijacks Microsoft 365 Calendars for Covert C2 Communications — Infosecurity-Magazine · July 20, 2026
  • When checking the URL isn’t enough: a Device Code Phishing attack via a Microsoft website — Securelist · July 6, 2026
  • System Notification Abuse Microsoft Phishing — abnormal.ai · May 21, 2026
  • Tracker — www.globenewswire.com · May 4, 2026
  • Microsoft 365 behind 32% of escalated security incidents — Securitybrief.Asia · March 31, 2026
  • Microsoft 365 tops Malaysia cyber incident report — Itbrief.Asia · March 31, 2026
  • From Misconfigured Spring Boot Actuator to SharePoint Exfiltration: How Stolen Credentials ... — Trendmicro · March 18, 2026
  • Hackers target Microsoft Entra accounts in device code vishing attacks — Bleepingcomputer · February 19, 2026

CVSS v3.1 Breakdown