Cloud-Architekt / AzureAD-Attack-Defense

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.
2.1k stars 303 forks source link

edits #3

Closed jsa2 closed 3 years ago

jsa2 commented 3 years ago

Add references to blog https://joonasw.net/view/cross-tenant-token-attacks-now-harder-in-azure-ad regarding arbitrary app registrations. It has bit different relation, but is my base where I understood how individual app registrations work for arbitrary uses