July 2018
Intermediate to advanced
216 pages
6h 3m
English

Every penetration tester is likely to encounter numerous virtual machines (VMs) in Azure. As you’ll learn in this chapter, attackers can leverage Azure Storage as a vector to steal secrets from, and take control of, Azure virtual machines. With the right level of access to these systems, an attacker could take complete control over any service running on the VMs and surreptitiously collect data about the users who connect to them.
To demonstrate this, I begin with a look at how to obtain the virtual hard disk (VHD) images for virtual machines, without ever gaining Azure portal access. Once a copy of the VM’s VHD is ...
Read now
Unlock full access