Feeds2.Feedburner
Microsoft 365 Users Targeted by Device Code Phishing Attacks
First seen 18 Dec 2025, 14:52 UTC
•



+2
•32.0
Export
Article Content
Browse articles
Attackers are targeting Microsoft 365 users through device code authorization phishing, which tricks users into approving access tokens. This method exploits Microsoft's OAuth 2.0 device authorization grant flow, allowing attackers to gain control of enterprise accounts. The trend indicates a shift from traditional password theft to exploiting modern authentication mechanisms to bypass multi-factor authentication.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Microsoft SharePoint Attacks: Over 400 Victims Including US Agencies
Widespread DNS Poisoning Campaign Targets Hotel Wi-Fi to Steal Credentials
CISA Urges Endpoint Security Enhancements After Stryker Cyberattack
Russian FSB Exploits Vulnerable Routers to Target Critical Infrastructure
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
Jewelbug APT Group Engages in Espionage and Cryptocurrency Fraud