Hackers target Microsoft Entra accounts in device code vishing attacks
Over Security - Cybersecurity news aggregator [Unofficial]
February 19, 2026
Threat actors are targeting technology, manufacturing, and financial organizations in campaigns that combine device code phishing and voice phishing (vishing) to abuse the OAuth 2.0 Device Authorization flow and compromise Microsoft Entra accounts.
Discussion in the ATmosphere