Evading EntraID Conditional Access Policies via Cross-Tenant ROPC
We show a Cross-Tenant ROPC issue that evades Conditional Access Policies. Attackers can successfully authenticate and generate "Success" logs without triggering MFA, though the resulting token grants no actual access to resources.