Get the latest tech news

Oasis Security Research Team Discovers Microsoft Azure MFA Bypass


Critical vulnerability could have allowed malicious actors to gain unauthorized access to users’ Microsoft accounts.

After typing a valid email and password, users are asked to further verify their identity, Microsoft supports a variety of MFA methods, including a verification code from an application. With deep experience in offensive and defensive operations, vulnerability research, and threat analysis, we focus on protecting hybrid cloud ecosystems and securing non-human identities. Our mission is to uncover vulnerabilities, analyze emerging threats, and collaborate with vendors to strengthen security across the industry, providing actionable insights that drive resilience and innovation.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Microsoft

Microsoft

Photo of azure mfa bypass

azure mfa bypass

Related news:

News photo

Amazon Paused Rollout of Microsoft Office for a Year After Hacks

News photo

US firm beats Microsoft, Harvard with 50 entangled logical qubits in quantum computer | Records are tumbling in months as companies race to build fault tolerant quantum computers.

News photo

Microsoft quietly axes Skype credit and phone number sales to push subscriptions