Sai · @akaSAI
0 followers · 13 posts · Server infosec.exchange

" researchers uncovered on December 6th, 2022, the threat actors employed brand abuse, app and other social engineering tactics to lure users into authorizing malicious apps.

...this malicious campaign includes data exfiltration, brand abuse, and delegated permissions over compromised users’ mailboxes, calendars, and meetings.

Users and organizations should not trust based on the verified publisher status alone.

Organizations are encouraged to use solutions that can automatically detect and revoke malicious third-party OAuth apps from their environments."

The Dangerous Consequences of Actors Abusing Microsoft’s “Verified Publisher” Status

proofpoint.com/us/blog/cloud-s

#proofpoint #impersonation #oauth #apps #cloud #security #threat #threatactors #microsoft #socialengineering #verifiedpublisher #malware

Last updated 2 years ago