
How Hackers Bypass Microsoft 365 MFA with Sophisticated New Phishing Attacks
About this episode
Welcome back to Tech Brewed! In today’s episode, host Greg Doig dives into a sophisticated new phishing campaign that has cybersecurity experts raising alarms. This isn’t your run-of-the-mill password theft—attackers are now cleverly bypassing Microsoft 365’s multi-factor authentication using a tricky method known as the OAuth 2.0 device code flow. Even if you’re following best practices, these threat actors may still find a way in, targeting key industries like tech, manufacturing, and financial services.
We’ll explore exactly how this attack works, the red flags you need to recognize, and practical steps to protect yourself and your organization. So, whether you’re an IT professional or just someone wanting to stay safe online, grab your favorite brew and tune in. It’s time to outsmart the latest cyber threats together!
Subscribe to the weekly tech newsletter at https://gregdoig.com
Get every episode summarized
Each time Tech Brewed publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from Tech Brewed

Four Effortless Tweaks to Boost Phone Battery Life Without Any Extra Tools
Tech Brewed

When AI Breaks Loose: Real-World Incidents Companies Can’t Ignore
Tech Brewed

The Delete Button Data Brokers Fear and How It’s Changing Privacy for California...
Tech Brewed

Make Technology Easier with These Five Senior-Focused Tech Tips
Tech Brewed