Source |
The Hacker News |
Identifiant |
3449802 |
Date de publication |
2021-09-30 06:49:19 (vue: 2021-10-01 00:06:01) |
Titre |
New Azure AD Bug Lets Hackers Brute-Force Passwords Without Getting Caught |
Texte |
Cybersecurity researchers have disclosed an unpatched security vulnerability in the protocol used by Microsoft Azure Active Directory that potential adversaries could abuse to stage undetected brute-force attacks.
"This flaw allows threat actors to perform single-factor brute-force attacks against Azure Active Directory (Azure AD) without generating sign-in events in the targeted organization's |
Notes |
|
Envoyé |
Oui |
Condensat |
abuse active actors adversaries against allows attacks azure brute bug caught could cybersecurity directory disclosed events factor flaw force generating getting hackers have lets microsoft new organization passwords perform potential protocol researchers security sign single stage targeted threat undetected unpatched used vulnerability without |
Tags |
Vulnerability
Threat
|
Stories |
|
Move |
|