Microsoft is disclosing a vulnerability that allowed hackers to obtain admin access to virtually any cloud instance of ...
A critical combination of legacy components could have allowed complete access to the Microsoft Entra ID tenant of every ...
Security researchers have found a critical vulnerability in Microsoft Entra ID which could have allowed threat actors to gain ...
A pair of flaws in Microsoft's Entra ID identity and access management system could have allowed an attacker to gain access ...
July 17, 2025; CVSS 10.0 Entra ID bug via legacy Graph enabled cross-tenant impersonation risking tenant compromise.
"Since the Azure AD Graph API is an older API for managing the core Azure AD / Entra ID service, access to this API could ...
A new proof of concept shows that attackers can use Azure AD CTS to leap to Microsoft and non-Microsoft application across tenants. Lateral movement techniques have been a critical component of ...
Just a day after Microsoft announced its new Entra cloud identity services portfolio, one of Entra's core products suffered wobbly performance for more than 12 hours. Microsoft warned that users of ...