SPA is for Single-Page Abuse! - Using Single-Page Application Tokens to Enumerate Azure
Common Information
Type Value
UUID 92f4d728-8a94-4a64-aa4d-4df555e4edd3
Fingerprint 3c6b8e19279b62d5
Analysis status DONE
Considered CTI value 0
Text language
Published Dec. 10, 2024, 11:04 a.m.
Added to db Dec. 10, 2024, 6:22 p.m.
Last updated Dec. 26, 2024, 11:04 a.m.
Headline SPA is for Single-Page Abuse! – Using Single-Page Application Tokens to Enumerate Azure
Title SPA is for Single-Page Abuse! - Using Single-Page Application Tokens to Enumerate Azure
Detected Hints/Tags/Attributes 53/2/26
RSS Feed
Details Id Enabled Feed title Url Added to db
Details 226 Security Boulevard https://securityboulevard.com/feed 2024-08-30 22:08
Attributes
Details Type #Events CTI Value
Details Domain 3
bloomreach.com
Details Domain 242
learn.microsoft.com
Details Domain 9
www.office.com
Details Domain 34
portal.azure.com
Details Domain 3
www.microsoft365.com
Details Domain 1
enumeration.pro
Details Domain 6
management.core.windows.net
Details Domain 40
graph.microsoft.com
Details Domain 3
graph.microsoft.net
Details Domain 70
login.microsoftonline.com
Details Domain 1
tenant.spa
Details Domain 308
microsoft.net
Details Domain 422
microsoft.com
Details Domain 1
tokens.pro
Details Domain 11
graph.windows.net
Details Domain 1
management.core.windows
Details File 6
management.core
Details IPv4 1583
127.0.0.1
Details Url 1
https://learn.microsoft.com/en-us/entra/identity-platform/index-spasingle-page
Details Url 1
https://learn.microsoft.com/en-us/entra/identity-platform/scenario-spa-app-registrationconfigure
Details Url 1
https://learn.microsoft.com/en-us/azure/active-directory-b2c/configure-authentication-sample-spa-appas
Details Url 3
https://learn.microsoft.com/en-us/troubleshoot/entra/entra-id/governance/verify-first-party-apps-sign-in#application
Details Url 3
https://learn.microsoft.com/en-us/entra/identity-platform/index-spa
Details Url 3
https://learn.microsoft.com/en-us/entra/identity-platform/scenario-spa-app-registration
Details Url 3
https://learn.microsoft.com/en-us/azure/active-directory-b2c/configure-authentication-sample-spa-app
Details Url 1
https://posts.specterops.io/spa-is-for-single-page-abuse-using-single-page-application-tokens-to-enumerate-azure-8c38dc77e409?source=rss