Crypto Ticker:
sysadmin from 4sysops.com

Microsoft 365 Android apps exposed account tokens via debug flag

IT News
Jun 3, 2026 at 21:30
24 Views
0 Comments
Microsoft 365 Android apps exposed account tokens via debug flag

A development flag accidentally left active in several Microsoft 365 Android applications allowed unauthorized apps to bypass security checks and harvest account access tokens. This vulnerability, dubbed FlagLeft, originated from a single line of code in a shared software development kit that disabled identity verification for cross-app...

Read the full article at the source.

Was this helpful?
Share:

Comments (0)

Please login to post a comment

No comments yet. Be the first to comment!