Om sesjonen
What if a low-privileged user in Azure could change their own User Principal Name (UPN)—essentially rewriting their identity in the cloud?
In this talk I’ll describe how I by accident found a simple vulnerability in Azure and Entra ID that allowed any low privileged user to change their own UPN, leading to privilege escalations in Azure, identity spoofing, user account takeovers in third party applications and other security implications. I will present how the vulnerability could be exploited, and how it could affect organizations.
This talk will highlight the fragility of cloud identity management systems, and vulnerabilities that can undermine trust in a whole ecosystem.