[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fFXAkbj-GqxI3ZMh8ZHFBd6gNf3pAHSoFrI2pB63NaSk":3},{"article":4,"iocs":49},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":29,"category":30,"article_tags":33},"8c7fdd59-7a8d-4813-8c75-5a656222089f","Voice Callers Exploit BYOD to Reach Microsoft 365, Corporate Data","voice-callers-exploit-byod-to-reach-microsoft-365-corporate-data-432786","Threat actors are leveraging Microsoft's Graph API to identify lucrative targets, then passing their access to extortion groups like ShinyHunters.","Threat actors are exploiting Bring Your Own Device (BYOD) policies to gain access to corporate Microsoft 365 environments. They leverage Microsoft's Graph API to identify high-value targets and then sell this access to extortion groups, such as ShinyHunters. This tactic bypasses traditional security measures by exploiting legitimate API access.","Attackers use Graph API to find Microsoft 365 targets for extortion groups.",null,"https:\u002F\u002Fwww.darkreading.com\u002Fthreat-intelligence\u002Fvoice-callers-exploit-byod-microsoft-365-corporate-data","https:\u002F\u002Feu-images.contentstack.com\u002Fv3\u002Fassets\u002Fblt6d90778a997de1cd\u002Fblte683970072b53815\u002F6aa308b0b1def869502ac7be\u002FPhone_passcode-Tero_Vesalainen-Getty.jpg?width=720&quality=80&disable=upscale","2026-09-10T20:36:03+00:00","2026-09-10T22:00:20.908846+00:00",7,[18,21,24,26],{"name":19,"type":20},"BYOD","technology",{"name":22,"type":23},"Microsoft 365","product",{"name":25,"type":20},"Graph API",{"name":27,"type":28},"ShinyHunters","threat_actor","e7b231c8-5f79-4465-8d38-1ef13aea5a14",{"id":29,"icon":11,"name":31,"slug":32},"Threat Intelligence","threat-intelligence",[34,39,44],{"category":35},{"id":36,"icon":11,"name":37,"slug":38},"2c8f44d4-b56e-47cf-9677-04f22c9ee78d","Identity & Access","identity-access",{"category":40},{"id":41,"icon":11,"name":42,"slug":43},"2e06f76c-d5b9-4f54-9eef-4d3447b10730","Breaches","breaches",{"category":45},{"id":46,"icon":11,"name":47,"slug":48},"6cbdd207-aaa1-4176-9534-e156b125e917","Nation-state","nation-state",[50],{"type":51,"value":27,"context":52},"malware","Extortion group leveraging compromised access"]