rising3월 20일· 2 sources
Full Disclosure: A Third (and Fourth) Azure Sign-In Log Bypass Found
전체 공개: Azure 로그인 로그 우회 취약점 세 번째(및 네 번째) 발견
Why it matters
The author discloses a third and fourth Azure Entra ID sign-in log bypass discovered since 2023, where specially crafted login requests could retrieve valid tokens without appearing in Entra ID sign-in logs. Unlike earlier bypasses (GraphNinja, GraphGhost) that only confirmed valid passwords, these latest ones returned fully functioning tokens, and the post also covers KQL-based detection methods.
2
Sources
+0
24h
—
Growth
173d
Active
azure entra idcvssgraphgoblingraphninjakqllogin log bypassmicrosoftoauth2 ropcpassword spraysign-in log bypass