Skip to content
← LibraryTechnique entry
APT-CLOUD-ADMIN-PORTALInitial Access

Cloud Admin-Portal Phish (Storm-0558)

Steal an enterprise IdP signing key from a memory crash dump → mint tokens for any tenant — the 2023 Microsoft / federal mailbox breach.

§ Where this technique fits

APT-CLOUD-ADMIN-PORTAL is catalogued under the Initial Access tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.