Website
*.cloudapp.azure.com
Tags
Phishing Download Exfiltration C&C
Phishing
Attackers can use a customized subdomain of cloudapp.azure.com to host their phishing websites.
Command and Control
Attackers can use a customized subdomain of cloudapp.azure.com as their C&C server.
Exfiltration
Attackers can add upload functionalities hosted on *.cloudapp.azure.com and exfiltrate data on there.
Download
Malicious tools can be stored on *.cloudapp.azure.com and downloaded when required.
Service Provider
Microsoft
Created: 2021-11-10
Last Update: 2021-11-10
Credits: mr.d0x