Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
ronbenton
4 months ago
|
parent
|
context
|
favorite
| on:
Full Disclosure: A Third (and Fourth) Azure Sign-I...
Bypassing logging feels relatively unimportant compared to some of the recent EntraID vulns we’ve seen
ares623
4 months ago
|
next
[–]
It takes a village of exploits to raise a successful and undetected attack.
BoredPositron
4 months ago
|
parent
|
next
[–]
Microsoft standpoint is probably: If it's undetected was there really an attack?
12_throw_away
4 months ago
|
prev
[–]
I dunno. It seems kinda bad that core auth log - which should be a primary source of truth during, say, a security audit - seems to work on a best-effort basis?
Consider applying for YC's Fall 2026 batch!
Applications
are open till July 27.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: