URL has been copied successfully!
Critical Microsoft UFO MCP Flaw Lets Attackers Remotely Control Android Devices Without Authentication
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

Critical Microsoft UFO MCP Flaw Lets Attackers Remotely Control Android Devices Without Authentication

A critical vulnerability in Microsoft’s open-source UFO Desktop AgentOS could allow remote attackers to access and control Android devices connected via the platform’s Mobile Model Context Protocol (MCP) servers without requiring authentication. This vulnerability is tracked as CVE-2026-73296 and GHSA-24fq-m9rr-g3mm, carrying a CVSS v3.1 score of 9.4. It affects UFO versions up to and including […] The post Critical Microsoft UFO MCP Flaw Lets Attackers Remotely Control Android Devices Without Authentication appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

First seen on gbhackers.com

Jump to article: gbhackers.com/critical-microsoft-ufo-mcp-flaw/

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link