AzureHound, a legitimate BloodHound penetration testing tool, is being weaponized by nation-state actors including Iranian Curious Serpens and Russian Void Blizzard. What's concerning: the tool querie…
Category: Threat Alerts / Cloud Security / Cloud Security
#azure#entra-id#azurehound#bloodhound#cloud-security#enumeration#nation-state
Palo Alto Networks’ Unit 42 released a detailed report on AzureHound, a discovery tool designed to map and audit Azure Active Directory environments. While intended for security auditing, threat actor…
Category: Intelligence / Cloud Security / Cloud Discovery
#azure#cloud#unit42#intel#threat-research
Microsoft details attack paths abusing Azure Blob Storage across the kill chain—from reconnaissance and misconfigured SAS tokens to lateral movement via blob‑triggered Functions and data exfiltration …
Category: Industry News / Research & Tools / Research & Tools
#azure#blob-storage#mitre#sas#defender-for-storage
Canonical issued USN-7810-3 addressing vulnerabilities in the Azure FIPS Linux kernel flavor. While specific CVEs require review in the linked advisory, the update underscores cloud image variance and…
Category: Threat Alerts / Vulnerabilities & Exploits / Linux & Kernel
#linux#kernel#azure#fips#ubuntu