A new phishing-as-a-service (PhaaS) campaign named Quantum-Route Redirect has been discovered targeting Microsoft 365 users globally. This sophisticated phishing operation leverages redirect techniques to deceive users into divulging their credentials, posing a significant threat to enterprise security. The campaign exploits the widespread use of Microsoft 365, aiming to compromise user accounts and gain unauthorized access to sensitive corporate data. Security experts warn that the Quantum-Route Redirect PhaaS is designed to bypass traditional email security filters by using dynamic redirect URLs that change frequently, making detection and mitigation challenging. Organizations are urged to enhance their email security protocols, implement multi-factor authentication, and educate employees about phishing risks to mitigate the impact of such attacks. The rise of PhaaS platforms like Quantum-Route Redirect underscores the evolving threat landscape where cybercriminals offer phishing tools as a service, lowering the barrier for launching large-scale phishing campaigns. Continuous monitoring and threat intelligence sharing are critical in defending against these sophisticated phishing threats targeting Microsoft 365 environments worldwide.
This Cyber News was published on www.bleepingcomputer.com. Publication date: Mon, 10 Nov 2025 21:30:10 +0000