Home / Mar 26, 2026 / Story
0
#6 The Hacker News general March 25, 2026 at 11:34 UTC

Device Code Phishing Hits 340+ Microsoft 365 Orgs Across Five Countries via OAuth Abuse

By [email protected] (The Hacker News)

AI Summary

Cybersecurity researchers have identified an active device code phishing campaign targeting Microsoft 365 identities across 340+ organizations in the US, Canada, Australia, New Zealand, and Germany. The campaign, first spotted on February 19, 2026, leverages OAuth abuse and has been accelerating in pace since its discovery.

Relevance score: 81.0/100

# More from March 26