SecDevOps.comSecDevOps.com

New ConsentFix attack hijacks Microsoft accounts via Azure CLI

BleepingComputer(4 days ago)Updated 4 days ago

A new variation of the ClickFix attack dubbed 'ConsentFix' abuses the Azure CLI OAuth app to hijack Microsoft accounts without the need for a password or to bypass multi-factor authentication (MFA)...

A new variation of the ClickFix attack dubbed 'ConsentFix' abuses the Azure CLI OAuth app to hijack Microsoft accounts without the need for a password or to bypass multi-factor authentication (MFA) verifications. [...]

Source: This article was originally published on BleepingComputer

Read full article on source →

Related Articles