
- Microsoft warns Teams users of scammers abusing cross‑tenant chat feature
- Attackers impersonate IT staff, trick victims into granting remote access via Quick Assist
- Once inside, they use trusted tools to move laterally, install Rclone, and exfiltrate sensitive company data
Microsoft has warned Teams users about fraudsters using the platform to access their corporate networks, deploy malicious code, and steal sensitive data.