A security flaw could have allowed anyone to spoof Microsoft employee emails

Security researchers recently claimed to have found a flaw that allowed threat actors to spoof Microsoft business emails.

A cybersecurity researcher with the alias Slonser (full name Vsevolod Kokorin, according to TechCrunch) recently posted on X with a telling screenshot that appeared to show an email that appeared to come from the security@microsoft.com e-mail address.