oauth
31 articles with this tag
HIGH
HIGH
HIGH
HIGH
INFO
HIGH
HIGH
MEDIUM
HIGH
INFO
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
INFO
HIGH
MEDIUM
MEDIUM
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
INFO
FBI Warns 'Kali365' Phishing Kit Hijacks Microsoft 365 OAuth Tokens
FBI warns about fast-growing phishing kit targeting Microsoft 365 users
FBI warns of Kali Oauth stealers
Tycoon2FA phishing kit evolves with device-code attacks on Microsoft 365
Claude Code OAuth Tokens Can Be Stolen Through Stealthy MCP Hijacking
The Back Door Attackers Know About — and Most Security Teams Still Haven’t Closed
ConsentFix v3 attacks target Azure with automated OAuth abuse
Major AI Clients Shipping With Broken OAuth Implementations
The Vercel Breach: OAuth Supply Chain Attack Exposes the Hidden Risk in Platform Environment Variables
Learning from the Vercel breach: Shadow AI & OAuth sprawl
Vercel Hacked: A Simple Failure of OAuth Hygiene | THREAT WIRE
Vercel Breach Explained: OAuth Risk in AI + SaaS Environment
Hackers exploit Vercel’s trust in AI integration
Next.js developer Vercel warns of customer credential compromise
AI-enabled device code phishing campaign exploits OAuth flow for account takeover
Device code phishing attacks surge 37x as new kits spread online
New EvilTokens service fuels Microsoft device code phishing attacks
Critical Vulnerability in OpenAI Codex Allowed GitHub Token Compromise
OAuth Consent and Device Code Phishing for Red Teams
Microsoft Entra OAuth Consent Grant Attack Simulation in the PhishU Framework
ThreatsDay Bulletin: OAuth Trap, EDR Killer, Signal Phishing, Zombie ZIP, AI Platform Hack & More
OAuth vulnerability in n8n automation platform could lead to system compromise
Attackers abuse OAuth’s built-in redirects to launch phishing and malware attacks
OAuth redirection abuse enables phishing and malware delivery
Microsoft: Hackers abuse OAuth error flows to spread malware
Threat actors weaponize OAuth redirection logic to deliver malware
OAuth phishers make ‘check where the link points’ advice ineffective
OAuth redirection abuse enables phishing and malware delivery
New phishing campaign tricks employees into bypassing Microsoft 365 MFA
Hackers target Microsoft Entra accounts in device code vishing attacks
Blue Team | Hunting Cloud Persistence Without Malware