Microsoft Warns OAuth Redirect Abuse Delivers Malware to Government Targets

Mar 3, 2026

Microsoft on Monday warned of phishing campaigns that employ phishing emails and OAuth URL redirection mechanisms to bypass conventional phishing defenses implemented in email and browsers.
The activity, the company said, targets government and public-sector organizations with the end goal of redirecting victims to attacker-controlled infrastructure without stealing their tokens. It described

Get Free Report & Network Analysis

Please check your email for the free report.