
Episode 34: Ryan Hausknecht (Again)
Detection: Challenging Paradigms
00:00
How to Forge a JSON Web Token for Azure Managed Identity
The most common way that people like bad guys quote unquote would get access is to social engineer somebody into giving me their username and password. There's also other ways right with applications because applications run as service principles in Azure. And it's not uncommon to see, you know, managed identities used throughout different types of resources. So yeah, so that's definitely a theoretical way in as well.
Play episode from 01:18:29
Transcript


