build1 distinct publisher
Honeypots logged a SharePoint JWT bypass hunting for a Business Data Catalog sink
Attackers are forging tokens SharePoint accepts, then enumerating management APIs and probing Business Connectivity Services for the execution sink. BleepingComputer reports nobody has seen that last step land.
Publishers:dev.to
Reality
- Evidence55
- Adoption42
- Hype gap+18
- Incentives30