Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

SyncJacked - Hijacking Identities Through Entra Connect Synchronization

fwd:cloudsec via YouTube

Overview

Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore advanced attack techniques targeting Microsoft Entra Connect's synchronization mechanisms in this 20-minute conference talk from fwd:cloudsec Europe 2025. Discover how SyncJacking and SoftMatching Abuse vulnerabilities exploit architectural trust assumptions between Active Directory and Microsoft Entra ID to enable identity hijacking and impersonation in hybrid cloud environments. Learn about SyncJacking, a Hard Matching process vulnerability that allows attackers to forcibly associate Entra ID cloud identities with compromised on-premises accounts, confirmed as a valid security issue by Microsoft's MSRC. Examine SoftMatching Abuse techniques that target weaknesses in the Soft Matching process to maliciously link accounts and maintain persistent access with minimal detection footprint. Watch live demonstrations showcasing end-to-end exploitation scenarios from reconnaissance through privilege escalation, while gaining practical insights into both offensive techniques and defensive strategies for securing hybrid identity synchronization systems. Presented by Tomer Nahum, a Security Researcher at Semperis and Microsoft Most Valuable Researcher (MVR) award recipient, who specializes in discovering attacks against on-premises and cloud identity infrastructures.

Syllabus

SyncJacked - Hijacking Identities Through Entra Connect Synchronization

Taught by

fwd:cloudsec

Reviews

Start your review of SyncJacked - Hijacking Identities Through Entra Connect Synchronization

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.