Nov. 8, 2022, 9:50 a.m. | david wyatt

DEV Community dev.to

The good news is I hacked myself, want to know how, let me explain.





Case Study


You get invited to use a new Power App, it's functionality is to read your Outlook Calendar events for a week, where you can remove unnecessary ones and then download the list to your OneDrive. Yes I know that's a pretty terrible app but lets pretend you want to use it.



You log in, try it and works great, after 30 seconds sign off, …

app hacked power power app powerapps powerautomate powerplatform security

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Security Solution Architect

@ Civica | London, England, United Kingdom

Information Security Officer (80-100%)

@ SIX Group | Zurich, CH

Cloud Information Systems Security Engineer

@ Analytic Solutions Group | Chantilly, Virginia, United States

SRE Engineer & Security Software Administrator

@ Talan | Mexico City, Spain