HomeTechnologyOver 80,000 passwords compromised in a password-spraying attack; Office, Teams, Outlook and other Microsoft account details exposed

Over 80,000 passwords compromised in a password-spraying attack; Office, Teams, Outlook and other Microsoft account details exposed

A massive password-spraying attack has compromised over 80,000 Microsoft accounts, affecting Outlook, Teams, and Office. Security experts advise MFA, strong password policies, and vigilance to stay protected.

June 15, 2025 / 10:38 IST
Story continues below Advertisement
Password spraying attack
Password spraying attack

A large-scale password-spraying attack has put over 80,000 Microsoft accounts at risk, affecting services such as Outlook, Teams, and Office 365. Security experts say the attack, which started in December 2024 and peaked in January 2025, successfully compromised numerous accounts across organisations of all sizes. The incident highlights growing cyberthreats and underscores the need for vigilance and strong protective measures.

Password-spraying attack details
Proofpoint has uncovered that the attack was orchestrated by a threat actor called UNK_SneakyStrike, who leveraged a tool known as TeamFiltration to carry it out. Password spraying involves trying a small number of frequently used password combinations across many different accounts — a tactic designed to avoid triggering alarm systems.

Story continues below Advertisement

TeamFiltration is a sophisticated framework first made available in 2022 by a penetration tester. It lets attackers efficiently automate large-scale attacks against Microsoft Entra IDs — the directory service that underpins Outlook, Teams, and Office 365 — without quickly locking accounts due to numerous failed attempts.

Using this tool, the attacker was able to launch a dramatic attack on January 8, 2025, attempting password combinations against nearly 16,500 accounts in a single day. The attack fell silent afterwards, then resurged in small batches — a tactic designed to stay under the radar of enterprise defences.