A new wave of device code phishing shows how threat actors are scaling account compromise using AI and end‑to‑end automation.
Cybercriminals and state-sponsored hackers are increasingly exploiting Microsoft’s legitimate OAuth 2.0 device authorization process to hijack enterprise accounts, bypassing multifactor authentication ...