Phishing campaigns continue to evolve, adapting to security systems and adopting new tactics to dupe even vigilant users. Recent findings have uncovered a sophisticated Microsoft MFA phishing scheme that leverages the OAuth authorization framework—specifically, Microsoft OAuth applications—to...
On June 13, 2025, Microsoft 365 users across Asia Pacific, Europe, the Middle East, and Africa experienced significant authentication disruptions, preventing administrators from adding multifactor authentication (MFA) sign-in methods to user accounts. This service degradation underscored the...
In an alarming revelation for businesses and individual users alike, researchers from Oasis Security uncovered a critical vulnerability within Microsoft’s Multifactor Authentication (MFA) system. Published on December 13, 2024, this discovery poses serious implications for over 400 million...
In a stunning revelation that has sent shockwaves through the cybersecurity community, Oasis Security has disclosed a method called AuthQuake that can bypass Microsoft's multi-factor authentication (MFA) in a mere hour—without requiring any user interaction. The ongoing saga of cybersecurity...
In a troubling turn of events for millions of Windows users, a vulnerability in Microsoft’s Multi-Factor Authentication (MFA) system has been uncovered, leaving a staggering number of accounts at risk of unauthorized access. This breach of security not only raises eyebrows but casts a dark...