cognitive cybersecurity intelligence

News and Analysis

Search

Russian spies use device code phishing to hijack Microsoft accounts

Russian spies are using a phishing technique known as device code phishing to commandeer Microsoft 365 accounts, researchers have found. This technique exploits an authentication process formalized through the OAuth standard, which is typically used for logging printers, smart TVs and similar non-browser devices into accounts. Security firm Volexity and Microsoft warn that this method has been employed since at least August 2021.

Source: arstechnica.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts