Azure

Allowing ARM for Dev Box: When Portals Impersonate Users (and How to Avoid It)
Allowing ARM for Dev Box: …

Hero image generated by ChatGPT This is a personal blog and all content herein is my own opinion and not that of my employer.


Enjoying the content? If you value the time, effort, and resources invested in creating it, please consider supporting me on Ko-fi.

Support me on Ko-fi

What The Entra …

Allow One, Allow All: When Conditional Access Loses the Plot
Allow One, Allow All: …

Hero image generated by ChatGPT

This is a personal blog and all content herein is my own opinion and not that of my employer.


Enjoying the content? If you value the time, effort, and resources invested in creating it, please consider supporting me on Ko-fi.

Support me on Ko-fi

What The …

InsomniHack & Entra Hybrid - Attack & Defence Mind Map : It's easier to attack than you think
InsomniHack & Entra …

This is a personal blog and all content herein is my personal opinion and not that of my employer.


Enjoying the content? If you value the time, effort, and resources invested in creating it, please consider supporting me on Ko-fi.

Support me on Ko-fi

Introduction

I recently had the privilege …

SilentReaper: Undetectable Azure Control Plane Data Harvest
SilentReaper: …

Hero Image generated by ChatGPT

This is a personal blog and all content therein is my personal opinion and not that of my employer.


Enjoying the content? If you value the time, effort, and resources invested in creating it, please consider supporting me on Ko-fi. …

VaultRecon: An Azure Control Plane/Data Plane Isolation Flaw
VaultRecon: An Azure …

Hero Image generated by ChatGPT

This is a personal blog and all content therein is my personal opinion and not that of my employer.


Enjoying the content? If you value the time, effort, and resources invested in creating it, please consider supporting me on Ko-fi. …

How Cloud Service Providers Are Failing At Shared Security Responsibility
How Cloud Service …


Enjoying the content? If you value the time, effort, and resources invested in creating it, please consider supporting me on Ko-fi.

Support me on Ko-fi

Introduction

In this post, I’m going to talk about a commonly discussed idea that cloud service providers (CSPs) are responsible for …