Back

Azure Hacking Fundamentals

Step into the high-stakes world of cloud security with "Azure Hacking Fundamentals".

Tarek

Lead Trainer

Course Summary

Description
<p>Step into the high-stakes world of cloud security with "Azure Hacking Fundamentals". This thrilling course is crafted for beginners and intermediates eager to understand the intricacies of attacking and securing Azure environments. Dive into practical, hands-on learning with cutting-edge techniques and online labs designed to simulate real-world scenarios.</p><p>What You'll Learn:</p><ul><li><p>Attacking Entra ID (Azure AD): Learn how to assess and exploit vulnerabilities in Azure Entra ID. Discover techniques for compromising identities.</p></li><li><p>Bypassing Azure Defences: Master strategies for evading Azure security defences. Explore techniques for bypassing Conditional Access Policies and other protective measures.</p></li><li><p>Storage Security Breaches: Delve into attacking Azure Storage accounts. Understand common misconfigurations and vulnerabilities, and practice methods for accessing and exfiltrating sensitive data.</p></li><li><p>Key Vault Compromise: Gain insights into attacking Azure Key Vaults. Learn how to exploit weaknesses to access or manipulate stored secrets and encryption keys.</p></li><li><p>Interactive Labs: Engage in instant, online labs that replicate real-life Azure environments. With just the press of a button, start simulations to apply your skills in a secure, hands-on setting.</p></li></ul><p>By the end of this course, you’ll be equipped with essential hacking skills and techniques for Microsoft Azure, empowering you to identify and address security weaknesses effectively. Whether you're a cybersecurity enthusiast or a professional looking to enhance your cloud security expertise, this course offers an exciting and practical introduction to hacking Azure.</p><h5><strong>Who is this course for?</strong></h5><ul><li><p>Penetration testers and red teamers</p></li><li><p>Cloud architects</p></li><li><p>IT administrators<br></p></li></ul>

Course Curriculum

Entra ID

4 lessons

1. Password Spray

2. User Token

3. Service Principal Secret

4. Service Principal Certification

Storage

5 lessons

5. Public Container Storage

6. Obscure Container Storage

7. Account SAS URI

8. Account SAS token

9. Account Access Key

Conditional access policy

3 lessons

10. Linux conditional access policy

11. Location Conditional Access Policy

12. Azportal Conditional Access Policy