Get the latest tech news

OneDrive File Picker flaw grants full drive access when users share a single file | Careless Microsoft security puts OneDrive users at serious risk


Microsoft is being extremely careless with security boundaries in OneDrive. A recent Oasis Security analysis revealed that OneDrive's File Picker tool can grant websites, apps, and outside...

However, security researchers warn that OneDrive's File Picker feature may expose users and organizations to serious data risks by granting full read access to unauthorized parties. A recent Oasis Security analysis revealed that OneDrive's File Picker tool can grant websites, apps, and outside users full read-only access to all content stored on the service. It claims that Microsoft fails to disclose the full extent of access granted through File Picker, leaving customers unable to distinguish between legitimate requests and potentially malicious attempts to exfiltrate data.

Get the Android app

Or read this on r/technology

Read more on:

Photo of Microsoft

Microsoft

Photo of users

users

Photo of risk

risk

Related news:

News photo

Updates to Windows for the Digital Markets Act

News photo

PayPal is killing Google Wallet integration for users in the US

News photo

Microsoft makes additional job cuts, laying off more than 300 in Washington state.