Tech / ICT

GhostCode attackers abuse device codes to take over Microsoft 365 accounts

Microsoft 365 users are being tricked into handing over access to their accounts by a new phishing kit, GhostCode, that exploits a weakness in a legitimate device authorization flow. Researchers in eSentire’s threat response unit identified the campaign in late August 2026. The kit abuses Microsoft’

Dit persbericht is gepubliceerd door de bron zelf. PersKade toont een samenvatting en verwijst naar het originele bericht.

Lees het volledige bericht op computerworld.com