6

Threat Update 56 - SSO Imposter: Targeting Box

 3 years ago
source link: https://www.varonis.com/blog/threat-update-56-sso-imposter-targeting-box/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

Threat Update 56 – SSO Imposter: Targeting Box

Incident Response

Inside Out Security Blog » Incident Response » Threat Update 56 – SSO Imposter: Targeting Box

Kilian Englert

Kilian Englert

Updated: 9/17/2021

In the final part of the series, Kilian Englert and Ryan O’Boyle from the Varonis Cloud Architecture team walk through how attackers could target Box. They investigate how an attacker who compromised a single sign-on admin account can maximize their effort, perform recon on a connected Box environment, elevate account rights, and make malicious configuration changes to allow anonymous data sharing.

Ryan and Kilian also discuss tips on how organizations can defend against these types of attacks. 

?Watch more attack scenarios here: https://www.varonis.com/webinars/

?To learn how else we can help, please visit us at: https://www.varonis.com/help/

Kilian Englert

Kilian Englert

Kilian has a background in enterprise security engineering, as well as security solution selling. Kilian is a Certified Information Systems Security Professional (CISSP) and creates internal and public content on topics related to cyber security and technology best practices.


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK