Upcoming Webinar Tradecraft Tuesday | The Cost of a Weak CAP: Anatomy of a Major Password Spray Attack In June, a massive password spray attack against Microsoft accounts resulted in 81 million login attempts and 78 successful compromises. Threat actors used Azure command line interface (CLI) sign ins via a deprecated OAuth authorization flow called ROPC. This allowed them to slip through weak spots in victim organizations’ Conditional Access policy (CAP) configurations. Additionally, we found that the actors were using BYOIP, a service that lets the assigned owner of a range of IP addresses get peering services from an ISP. These attacks are part of a large wave of credential spray attacks across a few different ASNs. In the past six months, Huntress has observed the volume of credential spray attacks increase by over 155 times across our customer base. During this Tradecraft Tuesday, we’ll break down how threat actors operate credential spray attacks, what’s driving the recent surge, and the best CAP configurations that organizations can use to address the authorization flow used across these incidents. * HUNTRESS WEBINAR GIVEAWAY TERMS. Live webinar participants may be eligible to receive one (1) Nintendo Switch 2™ + Mario Kart™ World Bundle (“Gift”), worth approximately USD $500.00. This gift giveaway (“Giveaway”) is sponsored by Huntress Labs Incorporated (“Huntress”). By registering for the above Huntress webinar (“Webinar”), you accept the following Huntress Webinar Giveaway Terms and all decisions of Huntress, which are final and binding in all respects. NO PURCHASE NECESSARY. PURCHASE OF HUNTRESS PRODUCTS OR SERVICES DOES NOT ENHANCE CHANCES OF RECEIVING THE GIFT. Eligibility: The Giveaway is applicable to individuals who are 18 years of age or older who register for and participate in the Webinar. All applicable laws and regulations apply. Void where prohibited or restricted by law, including, but