MERCURY and DEV-1084: Destructive attack on hybrid environment - Microsoft Security BlogMicrosoft detected a unique operation where threat actors carried out destructive actions in both on-premises and cloud environments.#microsoft#EN#2023#MERCURY#DEV-1084#analysis#cloud#hybrid#environment#Iran#TTPs#operation·microsoft.com·Apr 10, 2023MERCURY and DEV-1084: Destructive attack on hybrid environment - Microsoft Security Blog
Azure Cloud Shell Command Injection Stealing User’s Access TokensThis post describes how I took over an Azure Cloud Shell trusted domain and leveraged it to inject and execute commands in other users’ terminals.#lightspin#EN#2022#Azure#Cloud#Shell#injection#terminals#IoCs#Analysis#Tokens#steal·blog.lightspin.io·Sep 21, 2022Azure Cloud Shell Command Injection Stealing User’s Access Tokens
MERCURY and DEV-1084: Destructive attack on hybrid environment - Microsoft Security BlogMicrosoft detected a unique operation where threat actors carried out destructive actions in both on-premises and cloud environments.#microsoft#EN#2023#MERCURY#DEV-1084#analysis#cloud#hybrid#environment#Iran#TTPs#operation·microsoft.com·Apr 10, 2023MERCURY and DEV-1084: Destructive attack on hybrid environment - Microsoft Security Blog
Azure Cloud Shell Command Injection Stealing User’s Access TokensThis post describes how I took over an Azure Cloud Shell trusted domain and leveraged it to inject and execute commands in other users’ terminals.#lightspin#EN#2022#Azure#Cloud#Shell#injection#terminals#IoCs#Analysis#Tokens#steal·blog.lightspin.io·Sep 21, 2022Azure Cloud Shell Command Injection Stealing User’s Access Tokens