ThreatCluster

ConsentFix Attack Exploits Azure CLI to Compromise Microsoft Accounts

First seen 12 Dec 2025, 18:53 UTC GbhackersCybersecuritynews 85% similarity 20

Article Content

Browse articles
ThreatCluster

The ConsentFix attack is a new phishing technique that allows attackers to hijack Microsoft accounts by exploiting the Azure CLI app. This method bypasses traditional security measures such as passwords and multi-factor authentication, operating entirely within the browser context. Victims of this attack are primarily Microsoft account users.

ThreatCluster AI

Community

Browse all →

Tracked Entities in This Story