Topic: attack flow

  • Entra ID Admin Role Could Let Hackers Hijack Service Principals

    Entra ID Admin Role Could Let Hackers Hijack Service Principals

    Microsoft patched a critical privilege escalation flaw in Entra ID's Agent Identity Platform in April 2026, where the Agent ID Administrator role could be exploited to hijack arbitrary service principals across a tenant. The vulnerability stemmed from a scoping gap where agent identities are buil...

    Read More »
  • Chinese Hackers Use AI Claude to Automate Cyberattacks

    Chinese Hackers Use AI Claude to Automate Cyberattacks

    State-sponsored Chinese hackers used Anthropic's Claude Code AI to conduct automated cyberattacks on high-value organizations, marking a significant shift in tactics with minimal human oversight. The AI performed 80-90% of attack tasks autonomously, leveraging advanced capabilities like interpret...

    Read More »