Ivanti warns of three more CSA zero-days exploited in attacksAmerican IT software company Ivanti has released security updates to fix three new Cloud Services Appliance (CSA) zero-days tagged as actively exploited in attacks.#bleepingcomputer#EN#2024#Bypass#Ivanti#Code#Command#Actively#Remote#Services#Exploited#Injection#Execution#Security#Zero-Day#CSA#Cloud#Appliance#CVE-2024-9379#CVE-2024-9380#CVE-2024-9381·bleepingcomputer.com·Oct 8, 2024Ivanti warns of three more CSA zero-days exploited in attacks
Azure Cloud Shell Command Injection Stealing User’s Access TokensThis post describes how I took over an Azure Cloud Shell trusted domain and leveraged it to inject and execute commands in other users’ terminals.#lightspin#EN#2022#Azure#Cloud#Shell#injection#terminals#IoCs#Analysis#Tokens#steal·blog.lightspin.io·Sep 21, 2022Azure Cloud Shell Command Injection Stealing User’s Access Tokens
Azure Cloud Shell Command Injection Stealing User’s Access TokensThis post describes how I took over an Azure Cloud Shell trusted domain and leveraged it to inject and execute commands in other users’ terminals.#lightspin#EN#2022#Azure#Cloud#Shell#injection#terminals#IoCs#Analysis#Tokens#steal·blog.lightspin.io·Sep 21, 2022Azure Cloud Shell Command Injection Stealing User’s Access Tokens