
Russia-Linked Hackers Exploit Microsoft 365 Device Code Phishing Tactics for Account Takeovers
A suspected group with links to Russia has been conducting a phishing campaign aimed at stealing Microsoft 365 credentials through device code authentication workflows. This ongoing activity, tracked by Proofpoint under the name UNK_AcademicFlare, has been active since September 2025.The




