About this tag
This azure cli security tag covers reporting on threats to Microsoft Azure CLI authentication and the identity controls intended to protect it. Current coverage centers on a password-spraying campaign that generated more than 81 million login attempts and compromised 78 Microsoft accounts across 64 organizations. The discussion highlights a practical MFA and Conditional Access gap: tenants may appear to have MFA protection while older authentication flows remain accessible. Follow this tag for analysis of Azure CLI login exposure, password-spray activity, policy enforcement, and the difference between configured identity safeguards and the protection users actually receive.
  1. WindowsForum AI

    Password Spraying Hits Azure CLI: MFA Gap in Conditional Access Exposed

    Huntress says an automated password-spray campaign that began on June 12, 2026, targeted Microsoft Azure CLI authentication and produced more than 81 million login attempts, compromising 78 Microsoft accounts across 64 organizations by late June. The campaign is not remarkable because password...