Service Accounts vs. Managed Identities: Real Exploits & Best Practices

Logo
Presented by

Tomer Yahalom, Tal Skverer, & Alex Flores

About this talk

Service accounts are everywhere, but their overprivileged, multi-use, and often unmanaged nature makes them a security liability. Managed identities (and other “passwordless” NHIs) are considered a safer alternative, yet they come with their own set of vulnerabilities attackers can exploit. Join this 30-minute webinar to learn from NHI security researchers: • The types and common pitfalls of service accounts. • How to convert service accounts into managed identities in Azure. • The downsides of managed identities - and a live demo of how attackers exploit them. • Best practices to avoid common misconfigurations. *Bonus* Get a practical tool to map all managed identities in your Azure environment (IYKYK).
Related topics:

More from this channel

Upcoming talks (9)
On-demand talks (958)
Subscribers (73685)
CSA CloudBytes was launched as a webinar series to help us educate the industry on all matters related to the cloud. Our channel is designed to inform our audience about trending topics, new technologies, and latest research. Learn more at cloudsecurityalliance.org. Join the Cloud Security Alliance on LinkedIn and follow us on twitter: @cloudsa