<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>cloud &#8211; SCRT Team Blog</title>
	<atom:link href="/tag/cloud/feed/" rel="self" type="application/rss+xml" />
	<link>/</link>
	<description>Orange Cyberdefense Switzerland&#039;s technical blog</description>
	<lastBuildDate>Thu, 16 Jan 2025 15:17:23 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>/wp-content/uploads/2024/10/cropped-favicon-32x32-1-32x32.png</url>
	<title>cloud &#8211; SCRT Team Blog</title>
	<link>/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>The effect of granting Azure Reader role on Azure Container Registry instances</title>
		<link>/2024/12/13/understanding-azure-container-registry-permissions-a-security-concern/</link>
		
		<dc:creator><![CDATA[Quentin Brusa]]></dc:creator>
		<pubDate>Fri, 13 Dec 2024 08:27:13 +0000</pubDate>
				<category><![CDATA[Research]]></category>
		<category><![CDATA[azure]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[research]]></category>
		<guid isPermaLink="false">/?p=6672</guid>

					<description><![CDATA[We observed that granting Azure Reader role at subscription or resource group level allows users to pull container images from Azure Container Registry instances, thus potentially reveling confidential or sensitive data to unauthorised parties. In a recent security configuration review of one our client’s Azure workloads,&#160;we uncovered a significant issue regarding the Azure Container Registry &#8230; <a href="/2024/12/13/understanding-azure-container-registry-permissions-a-security-concern/" class="more-link">Continue reading <span class="screen-reader-text">The effect of granting Azure Reader role on Azure Container Registry instances</span></a>]]></description>
		
		
		
			</item>
	</channel>
</rss>
