Introduction
About 2 years ago I recorded a video for some colleagues showing just how easy it is to steal credentials within Microsoft 365 using open-source software called Evilginx. At the time, threat actors really were not using these pages and frankly weren’t very good at what they were doing. Users they were phishing were still falling for the Microsoft forms pages asking for…
Continue Reading Cody McLees’s Article on their blog
https://securing365.com/understanding-token-theft-in-microsoft-365-risks-prevention-and-best-practices/?utm_source=rss&utm_medium=rss&utm_campaign=understanding-token-theft-in-microsoft-365-risks-prevention-and-best-practices
Blog Syndicated with Cody McLees’s Permission

