“InfoSecCon-2025” was successfully held with tremendous audiences with various time demanding topics and keynotes at …
Read More »Azure’s Default API Connection Vuln Enables Full Cross-Tenant Compromise
A critical vulnerability in Microsoft Azure’s API Connection allowed attackers to breach resources in various Azure tenants globally. Gulbrandsrud discovered the flaw that earned him a $40,000 bounty and a chance to present at Black Hat. This flaw exploited Azure’s shared API Management setup, allowing unauthorized access to Key Vaults, …
Read More »