Highlights

  • Team of researchers finds 4 vulnerabilities in Microsoft Teams
  • Microsoft Teams issues could compromise information, cause app crashes
  • Positive Security disclosed Teams issues to Microsoft in March 2021

Latest news

Realme P4R 5G Review: The Ultimate Budget Marathon Runner 

Realme P4R 5G Review: The Ultimate Budget Marathon Runner 

Noida Expressway Emerges as NCR's Fastest-Growing Luxury Housing Corridor

Noida Expressway Emerges as NCR's Fastest-Growing Luxury Housing Corridor

India's current account deficit to remain in FY27 but RBI measures may turn BoP surplus: SBI Report

India's current account deficit to remain in FY27 but RBI measures may turn BoP surplus: SBI Report

BGMI Brings Glacier Rewards and Blissful Backpack to Latest Redeem Code Release

BGMI Brings Glacier Rewards and Blissful Backpack to Latest Redeem Code Release

JIIT Recognized Among Uttar Pradesh's Top Private Engineering Colleges in PW's 2026 Assessment

JIIT Recognized Among Uttar Pradesh's Top Private Engineering Colleges in PW's 2026 Assessment

Starlink refutes claims of frozen India approvals; says talks remain active with Government

Starlink refutes claims of frozen India approvals; says talks remain active with Government

Alpha teaser: Alia Bhatt goes undercover in elite ops, crushes opponents in high-stakes battles

Alpha teaser: Alia Bhatt goes undercover in elite ops, crushes opponents in high-stakes battles

Global Broker XM Introduces Mutual Rewards for Traders and Their Friends

Global Broker XM Introduces Mutual Rewards for Traders and Their Friends

Security vulnerabilities found in Microsoft Teams by researchers

A team of researchers from Positive Security found four vulnerabilities in Microsoft Teams, only one of which has been patched so far.

Security vulnerabilities found in Microsoft Teams by researchers

A team of researchers from Positive Security found four vulnerabilities in Microsoft Teams, they announced in a blog post. A total of four vulnerabilities were found, which could allow an attacker to spoof link previews, access internal Microsoft services, leak IP addresses, and DDoS the teams App on Android.

The team reportedly found the issues while researching the URL preview feature in Teams, Positive Security co-founder Fabian Bräunlein said.

Four vulnerabilities found in Microsoft Teams

One of the vulnerabilities is a Server-Side Request Forgery issue, which could leak information such as the response time, code, size, and open graph data. Another is a spoofing attack, which could open a different link than what was expected by the user when clicking a preview link, leading to a possible phishing attack.

A third vulnerability could allow leaking a user's IP address and user agent data by sending a message with a specially crafted link preview on Android.

The fourth, and potentially most serious vulnerability, allows a malicious attacker to crash the Teams app on Android completely, by sending a message with an invalid preview link. Opening the chat or conversation with the bad link will then repeatedly crash the Teams app.

Also Read: Apple iPhone 13 to be made in India: all you need to know

Microsoft issues fix for one issue

Positive Security say that they disclosed these vulnerabilities to Microsoft on March 10, 2021. However, they claim that Microsoft has only patched one of the four mentioned issues, concerning the IP leak on Android.

Bräunlein said that the DDoS issue could ‘become annoying’ for some users, but only the link spoofing vulnerability is likely to be used in serious attacks.

ADVERTISEMENT

Up Next

Security vulnerabilities found in Microsoft Teams by researchers

Security vulnerabilities found in Microsoft Teams by researchers

Realme P4R 5G Review: The Ultimate Budget Marathon Runner 

Realme P4R 5G Review: The Ultimate Budget Marathon Runner 

Asus Zenbook S14 Review: Stunning OLED Display Meets All-Day Battery Life

Asus Zenbook S14 Review: Stunning OLED Display Meets All-Day Battery Life

Xiaomi 17T Review: A Camera-First Flagship That Gets Almost Everything Right

Xiaomi 17T Review: A Camera-First Flagship That Gets Almost Everything Right

Qualcomm wants to make AI PCs more affordable with its new 'Snapdragon C' platform

Qualcomm wants to make AI PCs more affordable with its new 'Snapdragon C' platform

Realme Buds Air8 Pro Review: The New Benchmark for TWS Under ₹10,000 

Realme Buds Air8 Pro Review: The New Benchmark for TWS Under ₹10,000 

ADVERTISEMENT

editorji-whatsApp

More videos

Oppo Find X9 Ultra Review: A No-Compromise Ultra Phone

Oppo Find X9 Ultra Review: A No-Compromise Ultra Phone

Realme 16T 5G Review: Battery anxiety officially cancelled 

Realme 16T 5G Review: Battery anxiety officially cancelled 

Oppo Find X9s Review: The Android All-Rounder That Actually Delivers, Big Time!

Oppo Find X9s Review: The Android All-Rounder That Actually Delivers, Big Time!

Kenstar Tallde 105 BLDC Cooler Review: The Appliance That Made Delhi Summer Slightly Less Hostile

Kenstar Tallde 105 BLDC Cooler Review: The Appliance That Made Delhi Summer Slightly Less Hostile

Vivo X300 Ultra Review: This Flagship Is Basically a Mirrorless Camera

Vivo X300 Ultra Review: This Flagship Is Basically a Mirrorless Camera

OnePlus Nord CE6 Lite Review: The Smartest Budget Buy of 2026? 

OnePlus Nord CE6 Lite Review: The Smartest Budget Buy of 2026? 

Nord CE6 Review: Big Batteries, Smarter AI, and Better Display

Nord CE6 Review: Big Batteries, Smarter AI, and Better Display

Vivo X300 FE Review: Flagship Performance in a Pocket-Friendly Body

Vivo X300 FE Review: Flagship Performance in a Pocket-Friendly Body

Haier 1.7 Ton 5 Star Gold Decco Desert Rose Air Conditioner Review: When Cooling Gets a Brain

Haier 1.7 Ton 5 Star Gold Decco Desert Rose Air Conditioner Review: When Cooling Gets a Brain

OnePlus Pad 4 Review: This Might Be the Android Tablet to Beat

OnePlus Pad 4 Review: This Might Be the Android Tablet to Beat

Editorji Technologies Pvt. Ltd. © 2022 All Rights Reserved.