New Microsoft Purview innovations for Fabric to safely accelerate your AI transformation
2026-03-17T02:52:23Z•8fd6df2206206e5766d3eec214a0682e99181397d40bdc5e88a317524bcd9a2a
AI as tradecraftAI governanceContagious InterviewCoral SleetFlexibleFerretIOCsJasper SleetLLM chat exfiltrationMicrosoft FabricMicrosoft PurviewMicrosoft TeamsNorth Korean groupsOtterCookieSEO poisoningStorm-2561credential theftfake VPNidentity compromisemalicious browser extensionsmitigationsprompt injectionsigned trojanvishing
What happened
Collection of Microsoft Security Blog posts (Mar 2026) describing multiple active threats and defensive guidance: Storm-2561 uses SEO poisoning to distribute fake VPN clients that install signed trojans and steal VPN credentials; a Microsoft Teams vishing incident demonstrates identity-led intrusions via social engineering and trusted collaboration tools; the Contagious Interview campaign targets developers with fake coding interviews to deliver backdoors (OtterCookie, FlexibleFerret) that steal API tokens, cloud credentials, crypto wallets, and source code; malicious AI browser extensions exf
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- microsoft_security_blog
- Record identifier
- 8fd6df2206206e5766d3eec214a0682e99181397d40bdc5e88a317524bcd9a2a
- Enrichment time
- 2026-03-17T02:52:23Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.