New Microsoft Login Scam Exploits Device Code Phishing Technique

New Microsoft Login Scam Exploits Device Code Phishing Technique

First seen 1 Mar 2026, 15:10 UTC MakeuseofGeo.TvPhoneworld.PkThenews.PkFakti.Bg 25.0

Article Content

Browse articles
ThreatCluster

A new Microsoft login scam is rapidly spreading, utilizing a method known as device code phishing. This technique does not involve stealing passwords; instead, it tricks users into granting access to their accounts by exploiting a legitimate authentication feature. Users of Microsoft services are particularly affected as hackers manipulate the device authorization flow.

Timeline

2026-02-28
First article published detailing the scam
2026-03-01
Additional articles published warning about the scam