1/3 New video! In this video we walk through the first Azure attack workshop by @Mandiant youtu.be/D5gYhr6J830 We cover: - Resetting app credentials and logging in as the service principal - Listing Azure key vaults, listing secrets and showing secret values

DeanOfCyber's tweet image. 1/3 
New video! In this video we walk through the first Azure attack workshop by @Mandiant 

youtu.be/D5gYhr6J830

We cover:
- Resetting app credentials and logging in as the service principal
- Listing Azure key vaults, listing secrets and showing secret values

🧩 Investigating a Compromised Azure Virtual Machine (VM) medium.com/@paritoshblogs…

bhttparitosh's tweet image. 🧩 Investigating a Compromised Azure Virtual Machine (VM)
medium.com/@paritoshblogs…

Azure is down and so is half the internet. The other half. StatusGator is monitoring the situation. But our Early Warning Signals algorithm has detected unacknowledged issues at scores of services.

statusgator's tweet image. Azure is down and so is half the internet.

The other half.

StatusGator  is monitoring the situation. But our Early Warning Signals algorithm  has detected unacknowledged issues at scores of services.

Really @Azure? You are down and add link for implementing another failover strategies to and add link to status page for page not working! What’s the fuck! #azure #fuck

Mohamed7afezz's tweet image. Really @Azure? You are down and add link for implementing another failover strategies to and add link to status page for  page not working! What’s the fuck!

#azure #fuck

What a fun challenge to get into after moving from the blue team to the red team! #azurehacking #HTB

t3kn1cs's tweet image. What a fun challenge to get into after moving from the blue team to the red team! #azurehacking #HTB

🚨 BREAKING: AWS and Azure are both down right now 52% of the internet depends on these two companies Both just failed simultaneously 😭

AskPerplexity's tweet image. 🚨 BREAKING: AWS and Azure are both down right now

52% of the internet depends on these two companies

Both just failed simultaneously 😭
AskPerplexity's tweet image. 🚨 BREAKING: AWS and Azure are both down right now

52% of the internet depends on these two companies

Both just failed simultaneously 😭
AskPerplexity's tweet image. 🚨 BREAKING: AWS and Azure are both down right now

52% of the internet depends on these two companies

Both just failed simultaneously 😭

There's something magical about seeing both Microsoft Azure and Amazon Web Services down

jordancates's tweet image. There's something magical about seeing both Microsoft Azure and Amazon Web Services down
jordancates's tweet image. There's something magical about seeing both Microsoft Azure and Amazon Web Services down

AI browsers are already being hacked. Researchers at Brave Software, developers of the privacy-focused Brave browser, found a live prompt injection vulnerability earlier this month in Neon, the AI browser.

Pirat_Nation's tweet image. AI browsers are already being hacked.

Researchers at Brave Software, developers of the privacy-focused Brave browser, found a live prompt injection vulnerability earlier this month in Neon, the AI browser.

🔥 Microsoft patched a perfect 10.0 CVE in Entra ID (ex-Azure AD) that let attackers impersonate any user, even Global Admins—across every tenant worldwide. 🔑 MFA? Conditional Access? Logging? All bypassed. Total tenant takeover—SharePoint, Exchange, Azure resources. Details…

TheHackersNews's tweet image. 🔥 Microsoft patched a perfect 10.0 CVE in Entra ID (ex-Azure AD) that let attackers impersonate any user, even Global Admins—across every tenant worldwide.

🔑 MFA? Conditional Access? Logging? All bypassed. Total tenant takeover—SharePoint, Exchange, Azure resources.

Details…

I've been researching the Microsoft cloud for almost 7 years now. A few months ago that research resulted in the most impactful vulnerability I will probably ever find: a token validation flaw allowing me to get Global Admin in any Entra ID tenant. Blog: dirkjanm.io/obtaining-glob…


AzureHound Penetration Testing Tool Weaponized by Threat Actors to Enumerate Azure and Entra ID. The tool operates by collecting data through Microsoft Graph and Azure REST Application Programming Interfaces (APIs). cybersecuritynews.com/azurehound-enu…


Maybe laying off 30,000 people wasn't the best tactic

MelkeyDev's tweet image. Maybe laying off 30,000 people wasn't the best tactic

AWS and Azure both down rn… 😬

CyberArcheus's tweet image. AWS and Azure both down rn… 😬
CyberArcheus's tweet image. AWS and Azure both down rn… 😬

🔍 AzureHound - Graph API Eumeration Tool Detection Threat actors are misusing AzureHound to stealthily map Azure environments for privilege escalation, but defenders can now detect such reconnaissance more effectively using default DefenderXDR telemetry.…

0x534c's tweet image. 🔍 AzureHound - Graph API Eumeration Tool Detection 

Threat actors are misusing AzureHound to stealthily map Azure environments for privilege escalation, but defenders can now detect such reconnaissance more effectively using default DefenderXDR telemetry.…

If you don't know what I'm going to talk about, jump into this breakdown - tap every post until you find the start Memory Injection Attacks are the new frontier in AI exploits. Not your usual prompt hacks - these attacks plant hidden commands in an agent’s memory, making them…

Shuarix's tweet image. If you don't know what I'm going to talk about, jump into this breakdown - tap every post until you find the start

Memory Injection Attacks are the new frontier in AI exploits. 

Not your usual prompt hacks - these attacks plant hidden commands in an agent’s memory, making them…

Case study - Exploiting ElizaOS To show the real-world consequences of these flaws, researchers examined ElizaOS, a decentralized AI-agent framework used for automated Web3 tasks. Their experiments empirically demonstrate that the system can be manipulated through contextual…

Shuarix's tweet image. Case study - Exploiting ElizaOS

To show the real-world consequences of these flaws, researchers examined ElizaOS, a decentralized AI-agent framework used for automated Web3 tasks.

Their experiments empirically demonstrate that the system can be manipulated through contextual…


Again, @AzureSupport -- everything has gone pete tong, nothing reported on the status page but Azure has turned off. Is this the Frontdoor issue again? How widely are people affected. Let's get the investigation rolling, yeah?

huzi8t9's tweet image. Again, @AzureSupport -- everything has gone pete tong, nothing reported on the status page but Azure has turned off. Is this the Frontdoor issue again? How widely are people affected. Let's get the investigation rolling, yeah?

What a fun challenge to get into after moving from the blue team to the red team! #azurehacking #HTB

t3kn1cs's tweet image. What a fun challenge to get into after moving from the blue team to the red team! #azurehacking #HTB

What a fun challenge to get into after moving from the blue team to the red team! #azurehacking #HTB

t3kn1cs's tweet image. What a fun challenge to get into after moving from the blue team to the red team! #azurehacking #HTB

Loading...

Something went wrong.


Something went wrong.


United States Trends