Two medium-severity vulnerabilities, an unsecured email API endpoint and verbose error messages exposing OAuth tokens, chain together to enable authenticated phishing that bypasses all email security controls, persistent access to Microsoft 365 environments While protocols like SPF, DKIM, and DMARC…
The post Phishing and OAuth Token Vulnerabilities Lead to Full Microsoft 365 Breach appeared first on IT Security News.
SOCIAL SHARE CARD GENERATOR