Microsoft OneDrive File Picker Flaw Grants Apps Full Cloud Access — Even When Uploading Just One File

Microsoft OneDrive File Picker Flaw Grants Apps Full Cloud Access — Even When Uploading Just One File

Technology

Microsoft OneDrive File Picker Flaw Grants Apps Full Cloud Access — Even When Uploading Just One File
Cybersecurity researchers have discovered a security flaw in Microsoft’s OneDrive File Picker that, if successfully exploited, could allow websites to access a user’s entire cloud storage content, as opposed to just the files selected for upload via the tool.
“This stems from overly broad OAuth scopes and misleading consent screens that fail to clearly explain the extent of access being granted,

Read original source here.

Products You May Like

Articles You May Like

Preparations for more anti-ICE protests in LA – NBC Los Angeles
Trump signs resolutions to roll back California’s EV plans
Trump might sell Tesla after Musk feud
Bernie Sanders Says RFK Jr. Is Going To Kill Americans
Milan Carter Talks Barry’s Rollercoaster Ride in FUBAR Season 2