#RomHack2022

  Рет қаралды 538

Cyber Saiyan

Cyber Saiyan

Күн бұрын

Dr Nestori Syynimaa - Attacking Azure AD by abusing Synchronisation API: The story behind 40.000 USD in bug bounties [ attack | cloud ]
Azure AD is an Access and Identity Management (IAM) service used by over 88 per cent of Fortune 500 companies. From these, at least 84 per cent are using Azure AD Connect to synchronise objects from their on-prem AD to Azure AD. The credentials used for synchronisation have high privileges for both on-prem AD and Azure AD. With those credentials, a threat actor can access Azure AD using the same API Azure AD Connect is using…
In this session, I’ll first show how the flaw in Synchronisation API could be used to take over and delete cloud-only users, including Global Administrators. Second, I’ll show how the fix provided 500 days later by Microsoft could be bypassed using another flaw in the same API.
Slides: o365blog.com/t...

Пікірлер: 1
مسبح السرير #قصير
00:19
سكتشات وحركات
Рет қаралды 11 МЛН
大家都拉出了什么#小丑 #shorts
00:35
好人小丑
Рет қаралды 81 МЛН
Cloud Security with Microsoft 365 Developer Tenants
12:10
John Hammond
Рет қаралды 35 М.
Lavorare nella Cyber Security - Ask Us Anything
1:35:26
Cyber Saiyan
Рет қаралды 1,6 М.
AZ-305 Designing Microsoft Azure Infrastructure Solutions Study Cram - Over 100,000 views
3:38:35
John Savill's Technical Training
Рет қаралды 441 М.