Microsoft Warns OAuth Redirect Abuse Delivers Malware to Government Targets
Microsoft warns of phishing campaigns targeting government and public-sector organizations using OAuth redirect abuse to deliver malware.
Microsoft on Monday warned of phishing campaigns that employ phishing emails and OAuth URL redirection mechanisms to bypass conventional phishing defenses implemented in email and browsers. The activity, the company said, targets government and public-sector organizations with the end goal of redirecting victims to attacker-controlled infrastructure without stealing their tokens. It described
Vendors are matched automatically based on AI analysis. Verify with official sources.