For example, in the 2023 MGM assault, the attacker directly accessed an account with Super Admin permissions in Okta, which they combined with an inbound federation assault to impersonate any user in the tenant, get Azure admin privileges, and authenticate towards the Azure-hosted VMware surroundings the place they deployed ransomware. You gained�