Man in the Middle With You

I recently wrote about an attack against users of Office 365 which remains one of the most common causes of cyber-security related losses. Most cyber-crime is motivated by money so, having successfully compromised an Office 365 user’s mailbox, the attacker needs to monetise his success, so far only technical. In this piece I describe one of the attacker’s favourite gambits, diversion of planned payments to his own bank account.

