Microsoft Patches Vulnerability Leading to Azure Account Takeover
Microsoft recently addressed an OAuth 2.0 vulnerability that could allow an attacker to take over Azure accounts.
The issue impacts specific Microsoft OAuth 2.0 applications and allows an attacker to create tokens with the victim’s permissions, CyberArk’s security researchers have discovered.
Read more: Microsoft Patches Vulnerability Leading to Azure Account Takeover
Story added 3. December 2019, content source with full text you can find at link above.