Back to directory
WRITEUP #1369

Escalating Privileges with Azure Function Apps

Privilege EscalationCloudContainer escapeRCE
by@kfosaaen(Karl Fosaaen)
Program
Microsoft (Azure)
Published
Mar 23, 2023
Added to HackDex
Mar 28, 2023
Read Full Writeuphttps://www.netspi.com/blog/technical/cloud-penetration-testing/azure-function-apps/
RELATED WRITEUPS
Vulnerabilities in Open Source C2 Frameworks
RCEOS command injection
From MLOps to MLOops: Exposing the Attack Surface of Machine Learning Platforms
AI / LLMAI
Addressed AWS defaults risks: OIDC, Terraform and Anonymous to AdministratorAccess
CloudOIDC
Double Agent: Exploiting Pass-through Authentication Credential Validation in Azure AD
CloudPrivilege escalation
Bucket Monopoly: Breaching AWS Accounts Through Shadow Resources
CloudRCE

Built with ❤️ by Shubham Rawat