Highlights

  • Team of researchers finds 4 vulnerabilities in Microsoft Teams
  • Microsoft Teams issues could compromise information, cause app crashes
  • Positive Security disclosed Teams issues to Microsoft in March 2021

Latest news

Diksha Dagar Shines in Dream Start at 2025 Women's Scottish Open

Diksha Dagar Shines in Dream Start at 2025 Women's Scottish Open

University of New Mexico Shooting Leaves 1 Dead, 1 Injured

University of New Mexico Shooting Leaves 1 Dead, 1 Injured

Veda Krishnamurthy Bids Farewell to Professional Cricket

Veda Krishnamurthy Bids Farewell to Professional Cricket

Pakistan Army Chief's Strategic China Visit: Strengthened Ties

Pakistan Army Chief's Strategic China Visit: Strengthened Ties

Kichcha's Kings Bengaluru Joins India's Racing League

Kichcha's Kings Bengaluru Joins India's Racing League

Britain, France, Germany to Address Gaza Crisis Amid Diplomatic Tensions

Britain, France, Germany to Address Gaza Crisis Amid Diplomatic Tensions

Austrian Acquaintance of Concert Plot Suspect Convicted

Austrian Acquaintance of Concert Plot Suspect Convicted

David Gower Praises Rishabh Pant's Elevation of Left-Hand Batting Standards

David Gower Praises Rishabh Pant's Elevation of Left-Hand Batting Standards

Security vulnerabilities found in Microsoft Teams by researchers

A team of researchers from Positive Security found four vulnerabilities in Microsoft Teams, only one of which has been patched so far.

Video Player is loading.
Current Time 0:00
Duration 0:00
Loaded: 0%
Stream Type LIVE
Remaining Time 0:00
 
1x
    • Chapters
    • descriptions off, selected
    • captions off, selected

      A team of researchers from Positive Security found four vulnerabilities in Microsoft Teams, they announced in a blog post. A total of four vulnerabilities were found, which could allow an attacker to spoof link previews, access internal Microsoft services, leak IP addresses, and DDoS the teams App on Android.

      The team reportedly found the issues while researching the URL preview feature in Teams, Positive Security co-founder Fabian Bräunlein said.

      Four vulnerabilities found in Microsoft Teams

      One of the vulnerabilities is a Server-Side Request Forgery issue, which could leak information such as the response time, code, size, and open graph data. Another is a spoofing attack, which could open a different link than what was expected by the user when clicking a preview link, leading to a possible phishing attack.

      A third vulnerability could allow leaking a user's IP address and user agent data by sending a message with a specially crafted link preview on Android.

      The fourth, and potentially most serious vulnerability, allows a malicious attacker to crash the Teams app on Android completely, by sending a message with an invalid preview link. Opening the chat or conversation with the bad link will then repeatedly crash the Teams app.

      Also Read: Apple iPhone 13 to be made in India: all you need to know

      Microsoft issues fix for one issue

      Positive Security say that they disclosed these vulnerabilities to Microsoft on March 10, 2021. However, they claim that Microsoft has only patched one of the four mentioned issues, concerning the IP leak on Android.

      Bräunlein said that the DDoS issue could ‘become annoying’ for some users, but only the link spoofing vulnerability is likely to be used in serious attacks.

      Microsoft

      ADVERTISEMENT

      Up Next

      Security vulnerabilities found in Microsoft Teams by researchers

      Security vulnerabilities found in Microsoft Teams by researchers

      Realme 15 Pro Review ft. OnePlus Nord CE 5 & Nothing Phone 3a: One mid-ranger to rule them all!

      Realme 15 Pro Review ft. OnePlus Nord CE 5 & Nothing Phone 3a: One mid-ranger to rule them all!

      iQOO Z10R Review in 5 Simple Points: What You Need to Know

      iQOO Z10R Review in 5 Simple Points: What You Need to Know

      Infinix Hot 60 5G+ Review: Smart, Fast, and Surprisingly Polished

      Infinix Hot 60 5G+ Review: Smart, Fast, and Surprisingly Polished

      Oppo Reno14 Series is tailor-made for creators on the go. Here’s why

      Oppo Reno14 Series is tailor-made for creators on the go. Here’s why

      Samsung Galaxy Z Fold 7 Review: Slimmer, lighter, better in (almost) every way

      Samsung Galaxy Z Fold 7 Review: Slimmer, lighter, better in (almost) every way

      ADVERTISEMENT

      editorji-whatsApp

      More videos

      Samsung Galaxy Z Flip7 ASMR unboxing & first look: Chic style with fun vibes

      Samsung Galaxy Z Flip7 ASMR unboxing & first look: Chic style with fun vibes

      Samsung Galaxy Z Fold7 vs Vivo X Fold5: Which foldable flagship wins in 2025?

      Samsung Galaxy Z Fold7 vs Vivo X Fold5: Which foldable flagship wins in 2025?

      Vivo X Fold 5 Unboxing & First Impressions: Slimmer & Sharper

      Vivo X Fold 5 Unboxing & First Impressions: Slimmer & Sharper

      Snapdragon’s XR Day lands in India with a big bet on extended reality

      Snapdragon’s XR Day lands in India with a big bet on extended reality

      Vivo X200 FE Review ft. OnePlus 13S & Oppo Reno 14 Pro: The all-rounder that surprises

      Vivo X200 FE Review ft. OnePlus 13S & Oppo Reno 14 Pro: The all-rounder that surprises

      Infinix Hot 60 5G+ First Impressions: A budget phone, with boss energy

      Infinix Hot 60 5G+ First Impressions: A budget phone, with boss energy

      Samsung's Galaxy Z Fold7 and Flip7 First Impressions: What’s new?

      Samsung's Galaxy Z Fold7 and Flip7 First Impressions: What’s new?

      Amazon Prime Day 2025: 7 best smartphone deals you can't miss

      Amazon Prime Day 2025: 7 best smartphone deals you can't miss

      Samsung’s Galaxy Z Fold7 and Flip7 get major upgrades—but the new Flip7 FE steals the spotlight

      Samsung’s Galaxy Z Fold7 and Flip7 get major upgrades—but the new Flip7 FE steals the spotlight

      OnePlus Nord CE5 Review: Not flashy, but it seriously delivers

      OnePlus Nord CE5 Review: Not flashy, but it seriously delivers

      Editorji Technologies Pvt. Ltd. © 2022 All Rights Reserved.