Source |
The Hacker News |
Identifiant |
7078242 |
Date de publication |
2022-09-23 10:44:00 (vue: 2022-09-23 09:05:41) |
Titre |
Hackers Using Malicious OAuth Apps to Take Over Email Servers |
Texte |
Microsoft on Thursday warned of a consumer-facing attack that made use of rogue OAuth applications on compromised cloud tenants to ultimately seize control of Exchange servers and spread spam.
"The threat actor launched credential stuffing attacks against high-risk accounts that didn't have multi-factor authentication (MFA) enabled and leveraged the unsecured administrator accounts to gain |
Notes |
★★
|
Envoyé |
Oui |
Condensat |
accounts actor administrator against applications apps attack attacks authentication cloud compromised consumer control credential didn email enabled exchange facing factor gain hackers have high launched leveraged made malicious mfa microsoft multi oauth over risk rogue seize servers spam spread stuffing take tenants threat thursday ultimately unsecured use using warned |
Tags |
Threat
|
Stories |
|
Move |
|