> IT-Sentinel.com

// Cybersecurity & IT News Aggregator - Real-time Threat Intelligence Feed

NEWS CVE
← messages.back_to_articles

> Ropci deep-dive for Azure hackers

[SOURCE] Embrace The Red [DATE: 21/11/2022 01:00] [LANGUAGE: EN]
Misconfigurations with MFA setups are not uncommon when using AAD, especially when federated setups or Pass Through Authentication is configured I have seen MFA bypass opportunities in multiple production tenants. A common misconfiguration is that MFA is enforced at the federated identity provider, but AAD is forgotten and ROPC authentication still succeeds against AAD. To learn more about ROPC, check out the previous post about the topic. This post focuses on the ropci features that can be leveraged post-exploitation.
[messages.read_original_source] →