Microsoft warns about open redirect phishing campaign

The Visitor’s Center at Microsoft Headquarters campus is pictured July 17, 2014 in Redmond, Washington.
The Visitor’s Center at Microsoft Headquarters campus is pictured July 17, 2014 in Redmond, Washington. (Image credit: Stephen Brashear/Getty Images for Microsoft)

What you need to know

  • Microsoft is spreading the word about a phishing campaign that's been going on for months.
  • It utilizes open redirector links.
  • These links appear safe but will redirect you to malicious domains.

The Microsoft Security Intelligence Twitter account is at it again with another PSA regarding phishing campaigns mucking up link-clicking safety for denizens of the web. If you get an email with one of these sketchy links, you may not be able to recognize the problem until it's too late.

Here's the issue: These open redirector links are crafted to subvert normal inspection efforts. Smart users know to hover over links to see where they're going to lead, but these links are prepared for that type of user and display a safe destination designed to lure targets into a false sense of security. Click the link and you'll be redirected to a domain that appears legit (such as a Microsoft 365 login page, for example) and sets the stage for you to voluntarily hand over credentials to bad actors without even realizing it until it's too late.

This phishing campaign takes things further than just crafty URLs, though. It also employs Google reCAPTCHA services in order to keep threat analysis systems at bay, stopping site scanners from protecting you once you're in the malicious domain.

All in all, it's crafty stuff, and Microsoft admits as much over on Twitter. It also has a dedicated blog post that details the scheme in greater depth, though the post's protection advice section is light on actionable guidance. Still, there's a lot of detailed data in there that could potentially offer those with an advanced understanding of phishing attack procedures some worthwhile information.

Robert Carnevale

Robert Carnevale is the News Editor for Windows Central. He's a big fan of Kinect (it lives on in his heart), Sonic the Hedgehog, and the legendary intersection of those two titans, Sonic Free Riders. He is the author of Cold War 2395. Have a useful tip? Send it to robert.carnevale@futurenet.com.

Read more
The Microsoft logo on a smartphone and laptop arranged in Crockett, California, US, on Friday, Dec. 29, 2023.
Massive Microsoft account security change almost snuck out without enough warning
Artificial Intelligence AI Assistant Apps - ChatGPT, Anthropic Claude, Google Gemini, Microsoft Copilot, Perplexity, Poe.
Copilot gets a boost from Bing. Microsoft's search engine now promotes Copilot if you search for Gemini, ChatGPT, Grok, or other AI tools.
Microsoft Edge Scareware blocker
How to enable Edge's Scareware blocker and protect yourself from online scams
Outlook Client Hero
Did Microsoft just try to gaslight us? The tech giant has seemingly backtracked on changes to the account sign-in experience.
Microsoft 365 app on Windows 11 with shortcuts to create documents in Word, PowerPoint, Excel, and other Microsoft 365 applictions.
This Microsoft 365 feature will nudge users to save files to OneDrive
Apple Store in Bangkok, Thailand
Microsoft flags macOS bug — remotely bypassing Apple's sophisticated System Integrity Protection (SIP) security solution and allowing unauthorized third-party rootkit installs
Latest in Office 365
Microsoft Word logo in Windows 11 Search.
Microsoft quietly tests free, ad-supported version of Office apps for Windows with limited functionality
Microsoft 365 Copilot
Microsoft's new 'Microsoft 365' rebranding has us all perplexed. Again.
American football using Microsoft technology
How Microsoft 365 excelled my American football team to back-to-back northern championships
Microsoft Office
Final Microsoft 365 Insider blog post marks end of an era... sort of
Microsoft Word open on an HP Spectre x360 16 (2024)
Do you need to buy all of Office or is Word enough?
Microsoft PowerPoint on an iPhone
Microsoft's new iOS widget brings recently accessed Office 365 files directly to your home screen
Latest in News
Call of Duty: Black Ops 6 Zombies mode screenshots for Shattered Veil map.
The next Call of Duty Zombies map, "Shattered Veil", is dropping earlier than expected
Helldivers 2
The new Helldivers 2 Illuminate Major Order is so important that we got a new stratagem for it
Hogwarts Legacy troll hero image
Hogwarts Legacy DLC reportedly canceled by WB Games
Tom Clancy's Rainbow Six Siege
Rumored Ubisoft and Tencent agreement comes to fruition with 25% stake and new division for the Assassin's Creed developer
In-game screenshot of the player consuming an enemy in Shadow Labyrinth
This isn't your grandpa's Pac-Man — Bandai Namco's iconic character gets a gritty new action game this Summer
Key art for Dragon Quest 1 and 2 HD-2D remake
Every PC and Xbox game shown off during Nintendo Direct March 2025