2025-09-18 12:48:54
Interesting,
"One Token to rule them all - obtaining Global Admin in every Entra ID tenant via Actor tokens"
https://dirkjanm.io/obtaining-global-admin-in-every-entra-id-tenant-with-actor-tokens/
Interesting,
"One Token to rule them all - obtaining Global Admin in every Entra ID tenant via Actor tokens"
https://dirkjanm.io/obtaining-global-admin-in-every-entra-id-tenant-with-actor-tokens/
"While preparing for my Black Hat and DEF CON talks in July of this year, I found the most impactful #EntraID #vulnerability that I will probably ever find. This vulnerability could have allowed me to compromise every Entra ID tenant in the world (except probably those in national cloud deploymen…
Microsoft Azure/Cloud/AD considered harmful (twice, again)...
Context: https://cyberplace.social/@GossiTheDog/115220941705031025 and
oh stop whining about how #cryptocurrency is a #fraud, its #fake, its a #ponzi scheme. Ill have you know crypto is _perfectly_ safe and _com…