New on Insinuator: Part 1 of a four-part series on token theft in Microsoft Entra ID, accompanying ERNW White Paper 80. The target is no longer the password or even MFA, but the token issued once auth
New on Insinuator: Part 1 of a four-part series on token theft in Microsoft Entra ID, accompanying ERNW White Paper 80. The target is no longer the password or even MFA, but the token issued once authentication succeeds. Part 1 covers the threat landscape and the techniques: direct token theft and PRT abuse, AiTM phishing, device code phishing, consent phishing, ClickFix and the ConsentFix family,