The Hacker News
May 19, 2026
The New Phishing Click: How OAuth Consent Bypasses MFA
OAuth consent is the phishing vector MFA misses—long-lived tokens and cross-app access bypass trusted identity controls.
Advertisement
Advertisement