Skip to main content
Question

Security issue Jamf Connect- Potential to break login to gain browser access, exfil data

  • March 14, 2024
  • 2 replies
  • 7 views

Forum|alt.badge.img+1

Was able to do the following while exploring Microsoft Entra Github login option.
Has anyone encountered this? Any solutions out there to prevent?

 

2 replies

AJPinto
Forum|alt.badge.img+26
  • Legendary Contributor
  • March 14, 2024

This would be a Microsoft Entra Problem not Jamf Connect. If Microsoft is presenting a full navigable website, that is on them.


Forum|alt.badge.img+7
  • Contributor
  • March 15, 2024

You can disable sign in with Github through Entra. That should be off organization wide.