Threat actors are targeting technology, manufacturing, and financial organizations in campaigns that combine device code phishing and voice phishing (vishing) to abuse the OAuth 2.0 Device Authorization flow and compromise Microsoft Entra accounts. [...]
bleepingcomputer.com
bleepingcomputer.com
bsky.app
Hacker & Security News on Bluesky @hacker.at.thenote.app
