#azuresecurity — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #azuresecurity, aggregated by home.social.
-
Apply least privilege access for every identity. Grant only the permissions required for a role and review them regularly to prevent privilege creep. Steps: Use MSFT Entra ID roles and Privileged Identity Management (PIM) to enforce least privilege. Ensure compliance and security best practices #AzureSecurity #ZeroTrust #CyberSecurity.
-
Segment networks - never trust flat networks. Network segmentation limits lateral movement and reduces the blast radius of potential breaches. Steps: Implement NSGs and Azure Firewall rules to isolate workloads by subnet. Ensure compliance and security best practices #AzureSecurity #ZeroTrust #CyberSecurity.
-
Use Conditional Access to enforce device compliance. Ensure only trusted, compliant devices can access corporate resources to maintain Zero Trust principles. Steps: Create a policy in MSFT Entra ID Conditional Access to require compliant devices and block non-compliant ones. Ensure compliance and security best practices #AzureSecurity #ZeroTrust #CyberSecurity.
-
Block legacy authentication protocols immediately. Older protocols like POP and IMAP bypass modern security controls, making them a prime target for attackers. Steps: Navigate to MSFT Entra ID > Security > Authentication Methods and disable POP/IMAP protocols. Ensure compliance and security best practices #AzureSecurity #ZeroTrust #CyberSecurity.
-
Block legacy authentication protocols immediately. Older protocols like POP and IMAP bypass modern security controls, making them a prime target for attackers. Steps: Navigate to MSFT Entra ID > Security > Authentication Methods and disable POP/IMAP protocols. Ensure compliance and security best practices #AzureSecurity #ZeroTrust #CyberSecurity.
-
Microsoft has patched this. Researcher Shay Shavit will be demonstrating the full horror at Black Hat USA. Review your Azure Automation account identity exposure and apply Microsoft's security updates immediately.
Reward: You've received the Binding Arbitration Bracer — it does nothing, but you clicked Accept, so here we are.
#AzureSecurity #CloudSecurity #CyberSecurity #IdentityTheft #Microsoft #AchievementUnlocked (3/3)
-
Microsoft has patched this. Researcher Shay Shavit will be demonstrating the full horror at Black Hat USA. Review your Azure Automation account identity exposure and apply Microsoft's security updates immediately.
Reward: You've received the Binding Arbitration Bracer — it does nothing, but you clicked Accept, so here we are.
#AzureSecurity #CloudSecurity #CyberSecurity #IdentityTheft #Microsoft #AchievementUnlocked (3/3)
-
Microsoft has patched this. Researcher Shay Shavit will be demonstrating the full horror at Black Hat USA. Review your Azure Automation account identity exposure and apply Microsoft's security updates immediately.
Reward: You've received the Binding Arbitration Bracer — it does nothing, but you clicked Accept, so here we are.
#AzureSecurity #CloudSecurity #CyberSecurity #IdentityTheft #Microsoft #AchievementUnlocked (3/3)
-
Microsoft has patched this. Researcher Shay Shavit will be demonstrating the full horror at Black Hat USA. Review your Azure Automation account identity exposure and apply Microsoft's security updates immediately.
Reward: You've received the Binding Arbitration Bracer — it does nothing, but you clicked Accept, so here we are.
#AzureSecurity #CloudSecurity #CyberSecurity #IdentityTheft #Microsoft #AchievementUnlocked (3/3)
-
Microsoft has patched this. Researcher Shay Shavit will be demonstrating the full horror at Black Hat USA. Review your Azure Automation account identity exposure and apply Microsoft's security updates immediately.
Reward: You've received the Binding Arbitration Bracer — it does nothing, but you clicked Accept, so here we are.
#AzureSecurity #CloudSecurity #CyberSecurity #IdentityTheft #Microsoft #AchievementUnlocked (3/3)
-
Require passwordless authentication where possible. Passwordless options like Windows Hello or FIDO2 keys eliminate password-related vulnerabilities. Steps: Enable FIDO2 keys or Windows Hello for Business in Azure AD Authentication Methods. Ensure compliance and security best practices #AzureSecurity #ZeroTrust #CyberSecurity.
-
Enforce MFA for all accounts—no exceptions. Multi-Factor Authentication drastically reduces account compromise risk and should be mandatory across all identities. Use phish-resistant policy and tokens when possible. Steps: Configure MFA in Entra ID under Security > Authentication Methods, and enforce via Conditional Access policies. Ensure compliance and security best practices #AzureSecurity #ZeroTrust #CyberSecurity #MFA
-
ConsentFix v3 represents a significant escalation in automated OAuth abuse, specifically targeting Microsoft Azure. It exploits the inherent trust in first-party applications, allowing attackers to bypass MFA and Conditional Access. The attack chain leverages platforms like Pipedream and Cloudflare to capture tokens and achieve full account takeover, exposing a systemic challenge in cloud…
#cybersecurity #consentfixv3 #azuresecurity
🤖 This post was AI-generated.
-
You will often hear about identity breaches, password sprays, and phishing attacks — and yet, the most overlooked attack vector remains legacy authentication. Protocols like POP, IMAP, SMTP, and older Office clients were designed decades ago, long before modern identity threats existed. They cannot enforce Multi-Factor Authentication (MFA) or Conditional Access, making them a persistent “side door” for attackers. #AzureSecurity #CloudSecurity #zerotrust
-
Predictive Shielding FTW! Defender XDR now anticipates attacker moves and hardens paths proactively. Enable it for cross-cloud protection. #ThreatIntelligence #AzureSecurity
-
Azure's OpenAI from 2021 until almost the end of 2023 was allowed to actually use your data for training, even if they said it wasn't, including in a GCC environment (Government Cloud Computing). So yes, OpenAI effectively has gigabytes worth of classified information that you can just ask for due to companies like Ask Sage. Crazy how OpenAI gets rewarded for this, while whistleblowers get hunted down.
#openai #AI #AzureSecurity #azure -
New blog post live for my Sentinel Saturday series! :1000: :apartyblobcat:
Read the blog 👉 https://marshsecurity.org/sentinel-saturday-using-tasks-with-automation/In this post, I explore the power of using Microsoft Sentinel Tasks as part of your automation workflows.
Most teams aren’t getting the full #value out of Tasks in Microsoft Sentinel. Are you? When you combine Sentinel Tasks with automation, they become a game-changer.
- Auto-create tasks when automation fails (so nothing slips through the cracks)
- Auto-complete tasks when automation succeeds
- Use tasks to verify automation outcomes
- Build engineering feedback loops and automation #QARead the blog 👉 https://marshsecurity.org/sentinel-saturday-using-tasks-with-automation/
#MicrosoftSentinel #SentinelAutomation #CyberSecurity #SOCAutomation
#CloudSecurity #AzureSecurity #SIEM #SecOps #Automation #InfoSec
#CyberSecurityCommunity #BlueTeam #ThreatDetection #SecurityEngineering #SecurityOperations -
New blog post live for my Sentinel Saturday series! :1000: :apartyblobcat:
Read the blog 👉 https://marshsecurity.org/sentinel-saturday-using-tasks-with-automation/In this post, I explore the power of using Microsoft Sentinel Tasks as part of your automation workflows.
Most teams aren’t getting the full #value out of Tasks in Microsoft Sentinel. Are you? When you combine Sentinel Tasks with automation, they become a game-changer.
- Auto-create tasks when automation fails (so nothing slips through the cracks)
- Auto-complete tasks when automation succeeds
- Use tasks to verify automation outcomes
- Build engineering feedback loops and automation #QARead the blog 👉 https://marshsecurity.org/sentinel-saturday-using-tasks-with-automation/
#MicrosoftSentinel #SentinelAutomation #CyberSecurity #SOCAutomation
#CloudSecurity #AzureSecurity #SIEM #SecOps #Automation #InfoSec
#CyberSecurityCommunity #BlueTeam #ThreatDetection #SecurityEngineering #SecurityOperations -
New blog post live for my Sentinel Saturday series! :1000: :apartyblobcat:
Read the blog 👉 https://marshsecurity.org/sentinel-saturday-using-tasks-with-automation/In this post, I explore the power of using Microsoft Sentinel Tasks as part of your automation workflows.
Most teams aren’t getting the full #value out of Tasks in Microsoft Sentinel. Are you? When you combine Sentinel Tasks with automation, they become a game-changer.
- Auto-create tasks when automation fails (so nothing slips through the cracks)
- Auto-complete tasks when automation succeeds
- Use tasks to verify automation outcomes
- Build engineering feedback loops and automation #QARead the blog 👉 https://marshsecurity.org/sentinel-saturday-using-tasks-with-automation/
#MicrosoftSentinel #SentinelAutomation #CyberSecurity #SOCAutomation
#CloudSecurity #AzureSecurity #SIEM #SecOps #Automation #InfoSec
#CyberSecurityCommunity #BlueTeam #ThreatDetection #SecurityEngineering #SecurityOperations -
New blog post live for my Sentinel Saturday series! :1000: :apartyblobcat:
Read the blog 👉 https://marshsecurity.org/sentinel-saturday-using-tasks-with-automation/In this post, I explore the power of using Microsoft Sentinel Tasks as part of your automation workflows.
Most teams aren’t getting the full #value out of Tasks in Microsoft Sentinel. Are you? When you combine Sentinel Tasks with automation, they become a game-changer.
- Auto-create tasks when automation fails (so nothing slips through the cracks)
- Auto-complete tasks when automation succeeds
- Use tasks to verify automation outcomes
- Build engineering feedback loops and automation #QARead the blog 👉 https://marshsecurity.org/sentinel-saturday-using-tasks-with-automation/
#MicrosoftSentinel #SentinelAutomation #CyberSecurity #SOCAutomation
#CloudSecurity #AzureSecurity #SIEM #SecOps #Automation #InfoSec
#CyberSecurityCommunity #BlueTeam #ThreatDetection #SecurityEngineering #SecurityOperations -
🛡️ CVE-2025-12479 (CRITICAL, CVSS 10): Azure Access BLU-IC2/IC4 (≤1.19.5) lack CSRF tokens, allowing full remote compromise—no patch yet. Apply WAFs, enforce header checks, and restrict access. https://radar.offseq.com/threat/cve-2025-12479-cwe-352-cross-site-request-forgery--adbd5512 #OffSeq #Vuln #CSRF #AzureSecurity
-
🛡️ CVE-2025-12479 (CRITICAL, CVSS 10): Azure Access BLU-IC2/IC4 (≤1.19.5) lack CSRF tokens, allowing full remote compromise—no patch yet. Apply WAFs, enforce header checks, and restrict access. https://radar.offseq.com/threat/cve-2025-12479-cwe-352-cross-site-request-forgery--adbd5512 #OffSeq #Vuln #CSRF #AzureSecurity
-
🛡️ CVE-2025-12479 (CRITICAL, CVSS 10): Azure Access BLU-IC2/IC4 (≤1.19.5) lack CSRF tokens, allowing full remote compromise—no patch yet. Apply WAFs, enforce header checks, and restrict access. https://radar.offseq.com/threat/cve-2025-12479-cwe-352-cross-site-request-forgery--adbd5512 #OffSeq #Vuln #CSRF #AzureSecurity
-
🚨 CRITICAL: CVE-2025-12423 (CVSS 10) in Azure BLU-IC2 & IC4 (≤1.19.5) allows remote DoS via protocol manipulation (CWE-248). No patch yet—apply filtering, segment networks, and monitor logs. Stay proactive! https://radar.offseq.com/threat/cve-2025-12423-cwe-248-uncaught-exception-in-azure-9b7c3217 #OffSeq #AzureSecurity #CVE2025 #BlueTeam
-
🚨 CRITICAL: CVE-2025-12423 (CVSS 10) in Azure BLU-IC2 & IC4 (≤1.19.5) allows remote DoS via protocol manipulation (CWE-248). No patch yet—apply filtering, segment networks, and monitor logs. Stay proactive! https://radar.offseq.com/threat/cve-2025-12423-cwe-248-uncaught-exception-in-azure-9b7c3217 #OffSeq #AzureSecurity #CVE2025 #BlueTeam
-
🚨 CRITICAL: CVE-2025-12423 (CVSS 10) in Azure BLU-IC2 & IC4 (≤1.19.5) allows remote DoS via protocol manipulation (CWE-248). No patch yet—apply filtering, segment networks, and monitor logs. Stay proactive! https://radar.offseq.com/threat/cve-2025-12423-cwe-248-uncaught-exception-in-azure-9b7c3217 #OffSeq #AzureSecurity #CVE2025 #BlueTeam
-
🔴 CVE-2025-12424 (CRITICAL): Azure Access BLU-IC2 & BLU-IC4 (≤1.19.5) affected by SUID-bit privilege escalation flaw. No patch yet — restrict & monitor SUID binaries now to prevent full compromise. Details: https://radar.offseq.com/threat/cve-2025-12424-cwe-269-improper-privilege-manageme-ac110a5f #OffSeq #AzureSecurity #CVE #UnixSec
-
🔴 CVE-2025-12424 (CRITICAL): Azure Access BLU-IC2 & BLU-IC4 (≤1.19.5) affected by SUID-bit privilege escalation flaw. No patch yet — restrict & monitor SUID binaries now to prevent full compromise. Details: https://radar.offseq.com/threat/cve-2025-12424-cwe-269-improper-privilege-manageme-ac110a5f #OffSeq #AzureSecurity #CVE #UnixSec
-
🔴 CVE-2025-12424 (CRITICAL): Azure Access BLU-IC2 & BLU-IC4 (≤1.19.5) affected by SUID-bit privilege escalation flaw. No patch yet — restrict & monitor SUID binaries now to prevent full compromise. Details: https://radar.offseq.com/threat/cve-2025-12424-cwe-269-improper-privilege-manageme-ac110a5f #OffSeq #AzureSecurity #CVE #UnixSec
-
Microsoft Warns of Escalating Attacks on Azure Blob Storage, Urges Tighter Security
#Azure #Cybersecurity #Microsoft #CloudSecurity #InfoSec #DataBreach #ThreatIntel #Cloud #MicrosoftAzure #DevSecOps #AzureSecurity
-
Microsoft Warns of Escalating Attacks on Azure Blob Storage, Urges Tighter Security
#Azure #Cybersecurity #Microsoft #CloudSecurity #InfoSec #DataBreach #ThreatIntel #Cloud #MicrosoftAzure #DevSecOps #AzureSecurity
-
Microsoft Warns of Escalating Attacks on Azure Blob Storage, Urges Tighter Security
#Azure #Cybersecurity #Microsoft #CloudSecurity #InfoSec #DataBreach #ThreatIntel #Cloud #MicrosoftAzure #DevSecOps #AzureSecurity
-
Microsoft Warns of Escalating Attacks on Azure Blob Storage, Urges Tighter Security
#Azure #Cybersecurity #Microsoft #CloudSecurity #InfoSec #DataBreach #ThreatIntel #Cloud #MicrosoftAzure #DevSecOps #AzureSecurity
-
Microsoft Warns of Escalating Attacks on Azure Blob Storage, Urges Tighter Security
#Azure #Cybersecurity #Microsoft #CloudSecurity #InfoSec #DataBreach #ThreatIntel #Cloud #MicrosoftAzure #DevSecOps #AzureSecurity
-
A seemingly harmless Chrome extension can now hijack your digital keys—stealing Azure session cookies and bypassing MFA. Curious how this stealthy Cookie-Bite attack works and what you can do to stay secure?
https://thedefendopsdiaries.com/understanding-and-mitigating-the-cookie-bite-attack/
#cookiebiteattack
#azuresecurity
#sessioncookies
#cyberthreats
#microsoft365security -
A seemingly harmless Chrome extension can now hijack your digital keys—stealing Azure session cookies and bypassing MFA. Curious how this stealthy Cookie-Bite attack works and what you can do to stay secure?
https://thedefendopsdiaries.com/understanding-and-mitigating-the-cookie-bite-attack/
#cookiebiteattack
#azuresecurity
#sessioncookies
#cyberthreats
#microsoft365security -
Azure Blunder: Microsoft’s Airflow Integration Opens Door to Cyber Mischief!
Discover the low-severity flaws in Azure Data Factory that could let attackers play secret admin. Are your Kubernetes clusters safe? #AzureSecurity
https://thenimblenerd.com/?p=1033097 -
Azure Blunder: Microsoft’s Airflow Integration Opens Door to Cyber Mischief!
Discover the low-severity flaws in Azure Data Factory that could let attackers play secret admin. Are your Kubernetes clusters safe? #AzureSecurity
https://thenimblenerd.com/?p=1033097 -
Azure Blunder: Microsoft’s Airflow Integration Opens Door to Cyber Mischief!
Discover the low-severity flaws in Azure Data Factory that could let attackers play secret admin. Are your Kubernetes clusters safe? #AzureSecurity
https://thenimblenerd.com/?p=1033097 -
Hackers Exploiting Azure Key Vault Access Policies To Read Sensitive Data https://cybersecuritynews.com/azure-key-vault-let-attackers-escalate-privileges/ #KeyVaultVulnerability #CloudSecurityAudit #CyberSecurityNews #VulnerabilityNews #AzureSecurity #cloud
-
Hackers Exploiting Azure Key Vault Access Policies To Read Sensitive Data https://cybersecuritynews.com/azure-key-vault-let-attackers-escalate-privileges/ #KeyVaultVulnerability #CloudSecurityAudit #CyberSecurityNews #VulnerabilityNews #AzureSecurity #cloud
-
Hackers Exploiting Azure Key Vault Access Policies To Read Sensitive Data https://cybersecuritynews.com/azure-key-vault-let-attackers-escalate-privileges/ #KeyVaultVulnerability #CloudSecurityAudit #CyberSecurityNews #VulnerabilityNews #AzureSecurity #cloud
-
Oh, nice. With Azure Bastion Premium, that went GA in November, we can now do Session Recording, and most importantly, do private-only deployments that leverage Private Endpoints! 🎉
-
Oh, nice. With Azure Bastion Premium, that went GA in November, we can now do Session Recording, and most importantly, do private-only deployments that leverage Private Endpoints! 🎉
-
Oh, nice. With Azure Bastion Premium, that went GA in November, we can now do Session Recording, and most importantly, do private-only deployments that leverage Private Endpoints! 🎉
-
Oh, nice. With Azure Bastion Premium, that went GA in November, we can now do Session Recording, and most importantly, do private-only deployments that leverage Private Endpoints! 🎉
-
Looks like #Microsoft forgot to register the domains listed in their SDK, which has now been taken over
https://xcancel.com/watchtowrcyber/status/1846137686832369889?s=61&t=RPbY9cLDkgmEACY4rfxmfA
-
Looks like #Microsoft forgot to register the domains listed in their SDK, which has now been taken over
https://xcancel.com/watchtowrcyber/status/1846137686832369889?s=61&t=RPbY9cLDkgmEACY4rfxmfA
-
Looks like #Microsoft forgot to register the domains listed in their SDK, which has now been taken over
https://xcancel.com/watchtowrcyber/status/1846137686832369889?s=61&t=RPbY9cLDkgmEACY4rfxmfA
-
Azure Automation Account Packages & Runtime Environments Backdoored https://cybersecuritynews.com/azure-automation-backdoor/ #CyberSecurityResearch #AutomationAccount #Vulnerability #AzureSecurity #cybersecurity #cloud
-
Azure Automation Account Packages & Runtime Environments Backdoored https://cybersecuritynews.com/azure-automation-backdoor/ #CyberSecurityResearch #AutomationAccount #Vulnerability #AzureSecurity #cybersecurity #cloud
-
Azure Automation Account Packages & Runtime Environments Backdoored https://cybersecuritynews.com/azure-automation-backdoor/ #CyberSecurityResearch #AutomationAccount #Vulnerability #AzureSecurity #cybersecurity #cloud
-
Azure Kubernetes Clusters Vulnerable To Sneaky TLS Bootstrap Attack
Today, we're diving into the world of cybersecurity and exposing a sneaky attack that has been targeting Azure Kubernetes Clusters. That's right, your beloved cloud platform may not be as secure as you think!
#Azure #Kubernetes #CyberSecurity #Vulnerability #KubernetesAttack #TLSBootstrap #AzureSecurity #CloudSecurity #DataProtection #Hack #MicrosoftAzure #AzureKubernetesService #InfoSec #CyberAttack
https://cloudhosting.evostrix.eu/azure-kubernetes-clusters-vulnerable-to-sneaky-tls-bootstrap-attack/ -
Are your Azure Storage Accounts locked down to a network? Are you still resisting Private Endpoints? Keep your data secure #AzureSecurity #ConfigurationMonitoring #MicrosoftSentinel
-
Azure policy abuse for privileges escalation and persistence
https://securitylabs.datadoghq.com/articles/azure-policy-privilege-escalation/
-
Stay informed about potential security vulnerabilities in your Azure services by subscribing to Defender for Cloud's security alerts and recommendations. #SecurityAlerts #AzureSecurity
-
Safeguard your Azure environment by leveraging Microsoft Sentinel's AI-driven analytics to detect and respond to security threats in real-time. #AzureSecurity #MicrosoftSentinel