Abusing Azure Active Directory: From MFA Bypass to Listing Global Administrators

  Рет қаралды 4,403

Black Hat

Black Hat

Күн бұрын

The majority of Fortune 500 organizations are using Azure Active Directory (Azure AD) as Identity and Access Management (IAM) solution. The high adoption rate makes Azure AD a lucrative target for threat actors, including state-sponsored actors like APT29/Nobelium.
Azure AD is leveraging Microsoft's not-so-well-documented Evolved Security Service (eSTS). eSTS hides multiple security token services so that users see only Azure AD.....
By: Sravan Akkaram , Nestori Syynimaa (DrAzureAD)
Full Abstract and Presentation Materials:
www.blackhat.c...

Пікірлер
Compromising LLMs: The Advent of AI Malware
36:29
Black Hat
Рет қаралды 7 М.
Will A Guitar Boat Hold My Weight?
00:20
MrBeast
Рет қаралды 264 МЛН
Миллионер | 1 - серия
34:31
Million Show
Рет қаралды 2,2 МЛН
Когда отец одевает ребёнка @JaySharon
00:16
История одного вокалиста
Рет қаралды 1,6 МЛН
Spongebob ate Michael Jackson 😱 #meme #spongebob #gmod
00:14
Mr. LoLo
Рет қаралды 10 МЛН
Alice in Kernel Land: Lessons Learned From the eBPF Rabbit Hole
37:59
Phishing 2.0 - Detecting Evilginx, EvilnoVNC, Muraena and Modlishka
46:05
Learn Microsoft Azure Active Directory in Just 30 Mins (May 2023)
38:05
Andy Malone MVP
Рет қаралды 141 М.
#HITBCW2021 D1 - Attack Scenarios Abusing Azure Active Directory - Bill Ben Haim & Zur Ulianitzky
52:15
Threat Hunting in Active Directory Environment
37:15
Black Hat
Рет қаралды 6 М.
Cybersecurity Architecture: Who Are You? Identity and Access Management
31:15
What Does an LLM-Powered Threat Intelligence Program Look Like?
40:11
Will A Guitar Boat Hold My Weight?
00:20
MrBeast
Рет қаралды 264 МЛН