Summary

Unidentified attackers are sending malicious mails to Microsoft 365 and Gmail users by using Adobe Creative Cloud by sending them a genuine looking E-Mail which bypasses traditional E-Mail security solutions.

Attackers are creating free Adobe cloud account and then creating the PDF or image file with the embedded link then sharing the same to Microsoft 365 and Gmail users.

Recommendation:

Inspect all Adobe cloud pages for grammar and spelling, and to hover over links to ensure the intended page is legitimate.

References:

Adobe Cloud Abused to Steal Office 365, Gmail Credentials