A key characteristic of Microsoft OneDrive has a worrying security defect that could expose the user data


  • The researchers found a fault in Microsoft OneDrive File Sicker
  • Defect stems in the lack of fine grain Oauth permissions
  • Microsoft recognizes the fault, but it has not yet fixed it

A vulnerability has been found in the Microsoft OneDrive file selector that could allow threat actors to access the whole cloud archives of the people, experts warned.

Oasis security researchers discovered the failure and informed Microsoft, noting that the problem lies in the excessive permits requesting files requesting, including reading access to the entire unit. The tool requests these permits, since Oauth’s areas for OneDrive are not fine grain.

Leave a Comment

Your email address will not be published. Required fields are marked *