WhisperX tag archive

#OAuth 2.0

This page collects WhisperX intelligence signals tagged #OAuth 2.0. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-05-11 21:18:35 · Mastodon:mastodon.social:#cybersecurity

1. EvilTokens PhaaS Campaign Bypasses MFA at Scale Across 344 Organizations in 16 Days

Security researchers at Huntress have identified a highly automated Phishing-as-a-Service operation dubbed EvilTokens, which has successfully bypassed multi-factor authentication at scale by exploiting OAuth 2.0 device authorization flows. The campaign targeted at least 344 organizations over a 16-day window, represent...