The App Service has a system-assigned managed identity enabled. Identify the managed identity principal ID.
Authenticate to Azure as a service principal using the credentials found in backup-config.json.
You discover a storage account named prodreportstore01. Determine whether public blob access is enabled on the storage account.
Using a discovered SAS token with read/list permissions, enumerate blobs inside the sensitive-exports container. Which file contains credentials?
Using the previously gained access to the Azure environment, extract an access token from the Web App’s environment and use it to impersonate its Managed Identity. Which of the following roles is assigned to the Web App’s Security Principal?
You have been given a breached Azure user credential for an authorized lab tenant:
james.ward@cloudcorpsec.onmicrosoft.com
After logging in, identify the Azure Tenant ID and Subscription ID associated with the account.