A recently reported extortion operation shows how voice phishing, device-code login abuse, and rushed MFA enrollment can turn Microsoft 365 identity controls into a pathway for data theft.
A public extortion listing tied to DragonForce and helix-int.com shows how quickly a ransomware claim can become a security event, even before any intrusion is confirmed.