Attackers are shifting tactics inside enterprise identity systems. Instead of stealing passwords, they now abuse OAuth email access Microsoft Entra permissions to gain silent and persistent control over corporate inboxes. This approach allows threat actors to bypass traditional credential defenses while maintaining long-term access through legitimate authorization tokens. Security researchers warn that this method blends…
Cybercriminals are using a new method to stay inside corporate systems — even after password resets.Security researchers have identified an OAuth attack persistence technique that allows hackers to retain long-term access to compromised accounts.The discovery highlights a major blind spot in enterprise identity security. Proofpoint analysts revealed that attackers exploit OAuth to register malicious internal…