Azure VM Command Execution using Third-Party Extensions – Salt Minion
netspi.com | blog | #cloud | #cloud-security | #privilege-escalation | #red-team | #azure | #persistence | #salt-minion | #vm-extension
Summary
With the extensions/write permission, an attacker can deploy the Salt Minion extension pointed at a rogue Salt Master and push arbitrary states to an Azure VM as root over ZeroMQ ports 4505/4506.
- Published
- Collected
Skip to content