Clément Notin Pentester / Security researcher
Sharing my discoveries in pentesting and security research.
  • home
  • About
  • Archive
  • Talks
  • Tools
  • Vulnerabilities

Despite Recent Security Hardening, Entra ID Synchronization Feature Remains Open for Abuse

24 APR 2025
Despite Recent Security Hardening, Entra ID Synchronization Feature Remains Open for Abuse feature image

Microsoft hardened the Entra ID synchronization feature last year: restricted permissions on Directory Synchronization Accounts role, and new dedicated sync app.

Let’s find out how sync still works 🔍 Some old tricks persist—and new ones have emerged 💥

➡️ Find this article on Tenable’s blog: Despite Recent Security Hardening, Entra ID Synchronization Feature Remains Open for Abuse

Share on:
  • Twitter
  • Reddit
  • Facebook
  • Hacker News
Home
© 2025 Clément Notin. Powered by Jekyll & customized leonids theme.