Russian-linked cybercriminal group EncryptHub is exploiting a zero-day Microsoft Teams vulnerability (CVE-2025-26633) by impersonating IT staff to gain remote access and deploy malware. The attack uses social engineering and malicious PowerShell scripts to bypass security and steal sensitive data. Experts urge immediate patching and enhanced user awareness to defend against this sophisticated campaign.