Phishing Campaign Fake Compliance Notices Credential Harvesting | MSSP Advisory

High
DateMay 5, 2026
📋Executive Summary
A phishing campaign targeted over 35,000 users across 13,000 organizations using fake workplace compliance notices to steal Microsoft account credentials through fraudulent sign-in pages. The campaign concentrated on US targets and successfully led victims through fake compliance portals to credential harvesting pages that mimicked legitimate Microsoft login interfaces.
⚠️Why It Matters for MSSPs
Your clients are getting hit with compliance-themed phishing that looks legitimate enough to fool employees who expect compliance communications. If client accounts get compromised because they fell for fake compliance notices and you said nothing, you own that conversation with angry leadership.
📬

Get notified when client-ready advisories like this are published each week.

Join the MSSP Watchlist →
🏷️Threat Category
Phishing

Partner MSSPs receive the full advisory — talking points, actions, and social posts — under their own brand.