{"success":true,"data":{"id":"microsoft-o365-phishing","label":"Microsoft/O365 password-expiry phishing — password expires + click-to-verify/enter-credentials","description":"Body contains a Microsoft / Office 365 / Outlook brand reference combined with a password-expiry claim (\"your password expires in 24 hours\", \"your Microsoft 365 account will be deactivated\") — PLUS a credential-harvest CTA (\"click here to verify your password\", \"enter your current password below to continue access\"). One of the highest-volume corporate phishing families: attackers impersonate Microsoft IT notifications and direct users to fake login pages that capture their Office 365 credentials, granting access to the entire organisation's email, SharePoint, and Teams. Distinct from the generic account-phishing-body signal — this specifically targets the password-expiry attack vector. Legitimate Microsoft password reset flows never ask you to type your current password into a form linked from an email.","tier":"danger","category":"phishing","isThin":false}}