Advisory 2020-008: Copy-Paste Compromises – tactics ...

The ACSC identified the use of valid Windows domain account credentials being used to log into an Outlook Web Access (OWA) server. These credentials were stolen by the actor during a compromise of the victim’s managed service provider. ................
................