Attackers Aren’t Breaking Microsoft Passkeys. They’re Going Around Them.
4 Articles
4 Articles
Microsoft alerts to attacks that use passkeys as bait to compromise business accounts, imitating its authentication processes.
The Microsoft incident shows: A valid login does not protect against data outflow. How attackers use the Graph API and why the NIS2 compliance endangers. Tags: #Compliance #Cyber Security
A recent attack campaign revealed by Microsoft shows how consistently cybercriminal technical security mechanisms can deal with social engineering. They use passkeys, multi-factor authentication, and single sign-on as a pretext for targeted social engineering attacks on corporate accounts and cloud environments. For example, they pretend to be employees of IT support, contact employees via phone or SMS – partly via their private mobile phones [.…
Coverage Details
Bias Distribution
- 100% of the sources lean Right
Factuality
To view factuality data please Upgrade to Premium









