At Black Hat USA 2025, Dirk-jan Mollema showed how low-privilege cloud accounts can be turned into hybrid admins, bypassing API controls undetected.
J.R. Johnivan
Source: TechRepublic
Source Link: https://www.techrepublic.com/article/news-black-hat-2025-authentication-bypass-active-directory-entra-id/