AI Phishing & Passkey Attacks Target Businesses: How to Stay Protected
Cybercriminals are increasingly using AI-powered phishing, executive impersonation and fake invoices to target businesses. Recent campaigns have sent millions of convincing emails designed to trick finance teams into making fraudulent payments, showing how social engineering attacks are becoming more sophisticated.


At the same time, passkey phishing and identity-based attacks are putting Microsoft cloud accounts at risk. Attackers impersonate IT support, direct employees to fake sign-in pages and exploit device-code or authentication flows to gain access. Once inside, they can register their own MFA methods, access emails, and download sensitive files from services such as SharePoint and OneDrive.
These attacks highlight why organizations need multi-layered cybersecurity protection that goes beyond traditional antivirus. Strong email, endpoint, web, identity and data protection can help detect suspicious activity and reduce the risk of phishing, account compromise and data theft.
Protect your organization with NPAV’s comprehensive cybersecurity product suites for endpoint, web, data and business security.