This New Microsoft Attack Bypasses Passwords And MFA Entirely
Security researchers have uncovered a dangerous new phishing technique targeting Microsoft accounts. Dubbed “ConsentFix,” it tricks users into pasting a special link, granting attackers full access without needing a password or multi-factor authentication.