As attackers continually refine their techniques, Microsoft Azure—one of the most valuable targets in the cloud ecosystem—faces relentless assaults. With over 600 million daily attacks detailed in the Microsoft Digital Defense Report 2024, threat actors increasingly focus on Azure’s rich infrastructure for identity breaches, data exfiltration, and persistent access.
Hybrid and multi-cloud setups using Microsoft Entra ID, Azure, and M365 with Copilot expand opportunities for adversaries like Scattered Spider (UNC3944) and Midnight Blizzard to exploit. This session delves into the tradecraft of these groups, from initial access through lateral movement, to reveal how they compromise identities and strategically target high-value assets in Azure environments.
Vectra AI is the leader in hybrid attack detection, investigation and response. The Vectra AI Platform delivers integrated signal across public cloud, SaaS, identity, and data center networks in a single platform. Vectra AI’s patented Attack Signal Intelligence empowers security teams to rapidly detect, prioritize, investigate and stop the most advanced hybrid cyber-attacks. With 35 patents in AI-driven detection and the most vendor references in MITRE D3FEND, organizations worldwide rely on the Vectra AI Platform and MXDR services to move at the speed and scale of hybrid attackers. For more information, visit www.vectra.ai.