Security News Microsoft 365 'Direct Send' abused to send phishing as internal users BleepingComputer Daniel Bender Jun 26, 2025 An ongoing phishing campaign abuses a little‑known feature in Microsoft 365 called "Direct Send" to evade detection by email security and steal credentials.