Microsoft Investigation – Threat actor consent phishing campaign abusing the verified publisher process

Microsoft Security HeaderMicrosoft Security Header
Summary On December 15th, 2022, Microsoft became aware of a consent phishing campaign involving threat actors fraudulently impersonating legitimate companies when enrolling in the Microsoft Cloud Partner Program (MCPP) (formerly known as Microsoft Partner Network (MPN)). The actor used fraudulent partner accounts to add a verified publisher to OAuth app registrations they created in Azure …

Microsoft Investigation – Threat actor consent phishing campaign abusing the verified publisher process Read More »

Source – Microsoft Security Response Center

All content and images belong to their respected owners, this article is curated for informational purposes only.

Exit mobile version