---
title: New Pink Extortion Group Targets Microsoft 365 Cloud Data Via Vishing Scams
metaTitle: New Pink Extortion Group Vishing Attacks
description: The newly surfaced extortion group Pink uses vishing to gain access to enterprises' MS 365 cloud accounts, steals data, and makes aggressive demands.
slug: pink-extortion-group-vishing
date: "2026-06-06T12:00:00-05:00"
featured: true
image:
  src: https://cdn.securelogix.dev/slx/images/pink-extortion-group-vishing.webp
  alt: A realistically sculpted, hot pink skull against a dark backdrop.
sourcePublisher:
  name: Hackread
  url: "https://hackread.com/"
sourceArticle:
  url: "https://hackread.com/pink-extortion-microsoft-365-cloud-data-vishing-scams/"
tags: [Vishing, Tech Support Scam, Microsoft]
status: published
---

A new cybercrime group called Pink is targeting corporate data for financial extortion. Palo Alto Networks’ research division, Unit 42, first exposed this threat, believed to be linked with the broader Com network.

The researchers tracked the group under the cluster code CL-CRI-1147, and reported that Pink launched a dedicated data leak site on 31 May 2026, listing several initial victims.

Building on Unit 42’s data, security analytics firm Gurucul released a follow-up analysis on 4 June 2026 to help companies spot the group’s footprint inside corporate networks...
