noauth-vulnerability-still-affects-9%-of-microsoft-entra-saas-apps-two-years-after-discovery

New findings have revealed ongoing threats from an identified security flaw in Microsoft’s Entra ID, possibly allowing nefarious individuals to execute account takeovers in at-risk software-as-a-service (SaaS) platforms.
Identity protection firm Semperis, in a review of 104 SaaS applications, discovered that nine of them were susceptible to Entra ID cross-tenant nOAuth exploitation.
Initially revealed by


Leave a Reply

Your email address will not be published. Required fields are marked *

Share This