👩💻 Illicit Consent-Granting & App Backdooring – Obtaining persistence in Entra
This article details how attackers exploit Entra ID through OAuth consent injection and app backdooring, covering attack flows, MITRE ATT&CK mappings, detection strategies, and prevention methods for securing consent flows.
https://www.slashid.dev/blog/entra-app-backdooring/
#azure
Post #1254
385

- ❤ 1
- 👍 1
- 🔥 1