Search

    Language Settings
    Select Website Language

    GDPR Compliance

    We use cookies to ensure you get the best experience on our website. By continuing to use our site, you accept our use of cookies, Privacy Policy, and Terms of Service.

    dailyadda

    Microsoft 365 Accounts Reportedly Breached After Hackers Exploit Legitimate Microsoft OAuth Feature

    12 hours ago

    A cybersecurity firm has warned of a surge in attacks targeting Microsoft 365 accounts by abusing Microsoft’s OAuth 2.0 device authorisation flow. The campaigns bypass multifactor authentication by tricking users into entering device codes on legitimate Microsoft login pages, granting attackers direct access without stealing passwords. Activity has reportedly increased since September 2025 and involves both cybercriminal and state-aligned groups. The company says the attacks enable data theft, lateral movement, and persistent access, and urges organisations to restrict device code authentication and strengthen user awareness.
    Click here to Read More
    Previous Article
    Hogwarts Legacy 2 Could Feature Online Multiplayer, Warner Bros. Games Job Listing Suggests
    Next Article
    OpenAI Says Prompt Injections a Challenge for AI Browsers, Builds an Attacker to Train ChatGPT Atlas

    Related Technology Updates:

    Are you sure? You want to delete this comment..! Remove Cancel

    Comments (0)

      Leave a comment