Get the latest tech news
OneDrive File Picker flaw grants full drive access when users share a single file | Careless Microsoft security puts OneDrive users at serious risk
Microsoft is being extremely careless with security boundaries in OneDrive. A recent Oasis Security analysis revealed that OneDrive's File Picker tool can grant websites, apps, and outside...
However, security researchers warn that OneDrive's File Picker feature may expose users and organizations to serious data risks by granting full read access to unauthorized parties. A recent Oasis Security analysis revealed that OneDrive's File Picker tool can grant websites, apps, and outside users full read-only access to all content stored on the service. It claims that Microsoft fails to disclose the full extent of access granted through File Picker, leaving customers unable to distinguish between legitimate requests and potentially malicious attempts to exfiltrate data.
Or read this on r/technology