Tyler Reguly spoke with Dark Reading about Microsoft’s Patch Tuesday security update for March.
Originally published in Dark Reading.
Excerpt:
“Tyler Reguly, senior manager of security at Fortra, pointed to an elevation-of-privilege bug in Microsoft Authenticator (CVE-2024-21390) as something that administrators should pay attention to. Reguly said that successful exploitation of the vulnerability could allow the attacker to gain access to the users' multifactor authentication [MFA] codes. Microsoft has rated this with a CVSS score of 7.1 and indicated that user interaction is required as the victim would need to close and then reopen the application."
Read the full article here.