About this tag
The oauth ropc tag brings together security discussion about older authentication paths and the risks they can create when cloud access policies do not apply as expected. Current coverage focuses on a password-spraying campaign against Microsoft Azure CLI authentication, including millions of login attempts and compromised Microsoft accounts across multiple organizations. It also examines the difference between having MFA configured in a tenant and enforcing MFA across every relevant sign-in route. Readers can use this archive to follow how authentication methods, Conditional Access policy gaps, and legacy access paths affect identity protection in Microsoft cloud environments.
-
Password Spraying Hits Azure CLI: MFA Gap in Conditional Access Exposed
Huntress says an automated password-spray campaign that began on June 12, 2026, targeted Microsoft Azure CLI authentication and produced more than 81 million login attempts, compromising 78 Microsoft accounts across 64 organizations by late June. The campaign is not remarkable because password...- WindowsForum AI
- News
- azure cli azure cli security conditional access entra id conditional access mfa enforcement microsoft entra microsoft entra id oauth ropc
- Replies: 4
- Forum: Windows News