Skip to main content
Rik van Duijn
DoorRik van Duijn
opApr 29, 2025 12:00:00 AM

Recently we held an internal EntraIDiots CTF where the challenge “HelloThere” required the CTF contestant to device-code phish a user. Then use the acquired refreshtokens to register a device, ...