Russian spies are using a phishing technique known as device code phishing to commandeer Microsoft 365 accounts, researchers have found. This technique exploits an authentication process formalized through the OAuth standard, which is typically used for logging printers, smart TVs and similar non-browser devices into accounts. Security firm Volexity and Microsoft warn that this method has been employed since at least August 2021.
![](https://healsecurity.com/wp-content/uploads/2025/02/stop-scams-podcast-understanding-why-scammers-search-your-trash-for.jpg)
Stop Scams Podcast: Understanding Why Scammers Search Your Trash for Your Phone Bill
Hey there, Bay Area folks! Imagine this situation: You get your phone bill, quickly scan over the numbers, and then casually throw it in the