Research by cybersecurity firm Oasis Security has revealed a vulnerability in Microsoft's OneDrive File Picker that allows hundreds of web applications to gain full access to a user's entire OneDrive cloud storage, rather than just the single file selected for upload. This flaw exposes users' complete cloud drives to potentially unauthorized access by third-party apps. The issue was highlighted by several cybersecurity news outlets including The Hacker News, DarkReading, and SC Magazine. Microsoft has been notified of the vulnerability. The discovery underscores ongoing challenges in cloud security and application permissions management.
CISO Stature Rises, but Security Budgets Remain Tight: https://t.co/AOOePUk1tK by darkreading #infosec #cybersecurity #technology #news
From Code Red to Rust: Microsoft's Security Journey: https://t.co/FoVDiTaOT7 by darkreading #infosec #cybersecurity #technology #news
From the "Department of No" to a "Culture of Yes": A Healthcare CISO's Journey to Enabling Modern Care: https://t.co/fthm9TebV1 by The Hacker News #infosec #cybersecurity #technology #news