• Hype
  • Murai
  • Lipstiq
  • Varnam
  • Hangat
  • Autofreaks
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Mobile Gaming
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
  • News
    • Lifestyle
    • Computing
    • Hardware
    • Internet
    • Rumours & Leaks
    • Software
  • Forums
    • Kopitiam
    • Tradezone
    • Property Talk
    • Finance & Business
    • Fast and Furious
  • Gaming
    • PC Gaming
    • Console
    • Mobile Gaming
    • Esports
  • Mobile
    • Apps
    • OS
    • Tablets
    • Phones
    • Telco
      • Celcom
      • DiGi
      • Maxis
      • Tune Talk
      • U Mobile
      • Buzzme
  • Pricelists
    • Compu-zoneUpdated
    • ViewnetUpdated
    • Sri ComputersUpdated
    • StartecUpdated
  • More
    • Automotive Tech
    • Drone
    • Enterprise
    • Entertainment
    • Fashion
    • E-Hailing
    • Wearables
No Result
View All Result
Lowyat.NET
No Result
View All Result
Home Mobile Apps

Critical Microsoft Authenticator Flaw Puts Accounts At Risk

Needless to say, users are urged to update the app as soon as possible.

by Heirul Kamel
May 21, 2026
microsoft authenticator

Image: Microsoft

Share on WhatsappShare on TelegramThreads

Microsoft has released a major security update for its Authenticator app after discovering a critical vulnerability that could allow attackers to steal sign-in access tokens from users. The flaw affects both Android and iOS versions of the app and could potentially grant unauthorised access to company accounts, cloud services, and sensitive organisational data.

According to the company, the vulnerability could expose sign-in tokens tied to users’ work accounts. If attackers obtain these tokens, they may be able to access the same services and data that the affected user is authorised to use.

Microsoft says the flaw has not been actively exploited so far, and there are currently no publicly known exploits available. Even so, Microsoft is urging users to update the app immediately.

phone scam hacker stock photo
Source: Pexels.

How The Attack Works

Microsoft explains that attackers would first need to trick users into interacting with what appears to be a legitimate authentication request. Once the victim approves the request, the attackers could manipulate the app into generating an access token on the user’s behalf and sending it to a server controlled by the attacker.

The company also notes that affected users may not receive sufficiently clear information about what permissions or access they are granting during the process. This could make the attack harder for ordinary users to detect.

Microsoft classified the vulnerability as “critical”, with the issue reportedly capable of affecting systems outside the direct security scope of the vulnerable component itself. In practice, this means a compromised authentication token could potentially provide access to additional services managed by separate systems or organisations.

microsoft to delete passwords from authenticator app august 2025
Image: Shutterstock

Updated Versions Now Available

Microsoft has already released patched versions of the Authenticator app through the respective app stores. On Android, users should update to version 6.2605.2973 or newer, while iPhone users should install version 6.8.47 or later.

Users with automatic app updates enabled should receive the fix automatically. Those who have disabled automatic updates will need to manually update the app through the Google Play Store or Apple App Store.

(Source: Microsoft Security Response Centre)

RELATED:  Microsoft Reportedly Working On “K2” Initiative To Extensively Address Windows 11 Issues
Filed Under microsoftMicrosoft Authenticator
Updated 10:16 am, Thu, 21 May 26
https://lowy.at/97xi8
SendShareShareShare1Tweet1

Follow us on Instagram, Facebook, Twitter or Telegram for more updates and breaking news. 

No Result
View All Result

TRENDING THIS WEEK

  1. 1
    OS

    Samsung Begins One UI 8.5 Rollout For Older Devices

  2. 2
    Virtual Reality

    ASUS Announces Global Pre-Order For XREAL R1 AR Glasses

  3. 3
    E-Wallet

    TNG eWallet Now Lets Users Sign Up For Eastel Mobile Plans Directly In-App

  4. 4
    OS

    Apple Says Phones, iPads Secure Enough For Classified NATO Data

  5. 5
    Smartwatches

    Apple Watch Ultra 4 To Get Major Redesign, Significant Sensing Functions Upgrade

NETWORK

  • Hype
  • Murai
  • Lipstiq
  • Varnam
  • Hangat
  • Autofreaks

ABOUT

  • Advertise
  • Careers
  • Privacy Statement
  • Editorial Policy
  • Terms of Use
  • Contact Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
  • Forums
  • Laptops
  • Telco
  • Mobile
  • Gaming
  • Fintech
  • Artificial Intelligence
  • Cryptocurrency
  • Cyber Security
  • Hybrid Vehicles
  • Advertise with Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.

No Result
View All Result
  • News
  • Forums
  • Laptops
  • Telco
  • Mobile
  • Gaming
  • Fintech
  • Artificial Intelligence
  • Cryptocurrency
  • Cyber Security
  • Hybrid Vehicles
  • Advertise with Us

©2026 VIJANDREN RAMADASS. ALL RIGHTS RESERVED.