Skip to content
Dive Brief: - Businesses should be on guard for a hacking campaign in which attackers spoof OAuth client IDs to collect information about targets’ user directories, the security firm Proofpoint said on Monday. - The security firm said it had observed “multiple campaigns at scale abusing spoofed OAuth application identifiers, with distinct tooling, infrastructure, and execution patterns indicating ...
Hackers find a new trick to collect Microsoft Entra user data without raising red flags | Huntaegis