Lateral Movement in Azure App Services
netspi.com | blog | #cloud | #azure | #lateral-movement | #cloud-pentesting | #app-services | #managed-identity | #key-vault
Summary
From command execution on an Azure App Services host, attackers can inspect the environment, reach storage and Azure SQL, and abuse Managed Identity tokens to access Key Vaults and escalate.
- Published
- Collected
Skip to content