M365 admins should check their logs for successful intrusion attempts as a precaution. This can be done quickly and easily. The brute force attacks first reported by Speartip come mainly from ...