IAMDevBox
  • Guides
  • Tools
  • Trending
  • Contact
  • Search
Home » Tags

Tag · 1 article

DeviceCode

Jun 3, 2026 · 8 min read

OAuth Device Code Flow Security: How to Detect and Prevent Device Code Phishing

OAuth device code phishing (RFC 8628 abuse) bypasses MFA and steals M365 refresh tokens without a password. Learn how to disable device authorization grant in Entra ID, Keycloak, Auth0, and detect attacks with SIEM rules.
IAMDevBox

Identity and access management guides and browser tools for engineers who run Keycloak, ForgeRock, Ping Identity, SailPoint, OAuth 2.0 and SAML in production.

Guides

  • Keycloak
  • OAuth 2.0 & OIDC
  • SAML & SSO
  • ForgeRock & Ping Identity
  • SailPoint IdentityIQ
  • All guides

Tools

  • JWT Decoder
  • PKCE Generator
  • SAML Decoder
  • OAuth 2.0 Playground
  • OIDC Discovery Checker
  • All tools

Resources

  • ForgeRock deployment checklist
  • Trending
  • Search
  • About
  • RSS feed

Connect

  • GitHub
  • YouTube
  • Dev.to
  • Mastodon
  • Contact
© 2026 IAMDevBox. Independent and vendor-neutral. Tools run locally in your browser. Built with Hugo