Rik
banner
rikvduijn.bsky.social
Rik
@rikvduijn.bsky.social
Zolder
New blog: "Phishing for refreshtokens"

Performing an AiTM attack leveraging the Authorization code flow and Native M365 apps.

zolder.io/blog/phishin...
Phishing for Refresh Tokens  | Zolder - Applied Security Research
leveraging AiTM and the OAuth 2.0 authorization code flow to steal access and refresh tokens. Modified AITMWorker for steal refreshtokens.
zolder.io
January 28, 2025 at 10:16 AM
Volgende #leaks op 21 september. De locatie is nogal afgelegen dus stel je komt met de auto geef je dan op voor de carpool! docs.google.com/document/d/1...
September 9, 2023 at 6:21 PM