John Novak: 0-Day in Azure B2C and an Account Takeover Chain
A DEF CON 31 talk on a chain of vulnerabilities in Microsoft Azure B2C that allowed an unauthenticated attacker to gain access to accounts in any tenant.
The research begins with a cryptographic implementation flaw and escalates into a key-recovery attack, leading to full account compromise.
The vulnerability could also expose information about undisclosed 0-day bugs submitted by researchers through Microsoft’s Bug Bounty portal.
The research begins with a cryptographic implementation flaw and escalates into a key-recovery attack, leading to full account compromise.
The vulnerability could also expose information about undisclosed 0-day bugs submitted by researchers through Microsoft’s Bug Bounty portal.