“A single point of entry can quickly scale to larger enterprise impacts”: Microsoft introduces changes to tackle ShinyHunters
ShinyHunters abused the OAuth trust of Salesforce by tricking users and later compromising SaaS integrations and stealing tokens to gain access to hundreds of customer environments Reports suggested up to 700 casualties; Attackers exfiltrated data via legitimate APIs, making the activity appear normal and persistent Microsoft responded with Defender for Cloud Apps upgrades, adding richer […]









