_Weyo_alamy.png%3Fwidth%3D1280%26auto%3Dwebp%26quality%3D95%26format%3Djpg%26disable%3Dupscale&w=2048&q=75)
'Cookie Bite' Attack Exploits Azure Authentication Tokens for Persistent Cloud Access
CybersecurityCloudSecurityAuthenticationPersistentAccess
This content is an AI-generated summary. If you encounter any misinformation or problematic content, please report it to cyb.hub@proton.me.
A proof of concept (PoC) of an attack vector exploits two Azure authentication tokens from a browser, providing malicious actors with persistent access to essential cloud services, including Microsoft 365 applications. This attack, named 'Cookie Bite', targets Entra ID tokens, allowing attackers to maintain unauthorized access to cloud services. The described impacts include persistent access to Microsoft 365 applications, which could compromise the security of users' data and operations.