#identity-provider-abuse

[ follow ]
Information security
fromComputerworld
1 week ago

OAuth phishers make 'check where the link points' advice ineffective

Attackers use phishing emails with malicious OAuth links containing broken parameters to redirect users to attacker-controlled destinations through legitimate identity providers.
[ Load more ]