Tag
medium
advisory
Azure AD Guest to Member User Type Conversion
2 rules 1 TTPAn adversary may convert a guest user account to a member account in Azure Active Directory to elevate privileges and gain persistent access to resources.
Azure Active Directory
privilege-escalation
azure
entra
guest-account
2r
1t
medium
advisory
Windows Guest Account Enabled via net.exe
2 rules 1 TTPThe Windows guest account, typically restricted, can be enabled via `net.exe` for malicious activities like malware installation or data theft, potentially indicating persistence, defense evasion, privilege escalation or initial access.
Splunk Enterprise +2
guest-account
persistence
windows
2r
1t