flâneur

Threat actors misuse OAuth applications to automate financially driven attacks | Microsoft Security Blog

microsoft.com · 3,854 words · saved by 1 readers

Microsoft presents cases of threat actors misusing OAuth applications as automation tools in financially motivated attacks.

Threat actors are misusing OAuth applications as an automation tool in financially motivated attacks. OAuth is an open standard for token-based authentication and authorization that enables applications to get access to data and resources based on permissions set by a user. Threat actors compromise user accounts to create, modify, and grant high privileges to OAuth applications that they can misuse to hide malicious activity. The misuse of OAuth also enables threat actors to maintain access to applications even if they lose access to the initially compromised account. In attacks observed by…

saved by

related reading