SECURITYTHE HACKER NEWS
6 Reasons Why Device Code Phishing is the Fastest-Growing Threat of 2026
Device code phishing, which abuses the OAuth 2.0 device authorization grant to steal access tokens, has rapidly evolved from a niche red-team technique to an industrial-scale threat in under six months. Originally designed for input-constrained devices like smart TVs and printers, the device authorization login flow is now being exploited in a wide range of applications beyond its intended scope.
Mentioned
Related Signal
Adjacent reporting
- Tycoon 2FA Phishers Scatter, Adopt Device Code Phishing
- Hundreds of orgs compromised daily in Microsoft device code phishing attacks
- FBI warns about fast-growing phishing kit targeting Microsoft 365 users
- Tycoon2FA hijacks Microsoft 365 accounts via device-code phishing
- The New Phishing Click: How OAuth Consent Bypasses MFA