News

Be careful when using OneDrive’s File Picker to share access to your documents. Vague language indicates services like ...
Researchers found a security flaw in OneDrive File Picker that grants apps access to any and all files in the account when ...
Microsoft is being extremely careless with security boundaries in OneDrive. A recent Oasis Security analysis revealed that ...
Security researchers uncovered “EchoLeak,” a zero-click flaw in Microsoft 365 Copilot, exposing sensitive data without user ...
Security researchers Oasis discovered the flaw and reported it to Microsoft ... The tool asks for these permissions since the OAuth scopes for OneDrive aren’t fine-grained.
A security flaw in Microsoft’s OneDrive File Picker has exposed millions of users to potential data overreach. According to new findings from Oasis Security, the issue lies in how the picker requests ...
Oasis Security told Microsoft (and the apps that connect with OneDrive) about the flaw before sharing it, but Redmond has said that a fix isn't a priority for the company. A spokesperson for Micro ...
Microsoft has fixed a dangerous zero-click attack in its Generative Artificial Intelligence (GenAI) model which could have ...
A new report out today from identity management startup Oasis Security Ltd ... expose users’ entire OneDrive content to third-party web applications. The flaws, which affect numerous services ...