Skip to main content
Rachel Rabin

Rachel Rabin

Threat researcher on Proofpoint's Cloud Threat Research Team, known for research on cloud brute force and OAuth client ID spoofing attacks against Microsoft Entra ID.

Sep 3, 2026

10:00
With that, Rachel, kick it over to you.
10:03
Thank you so much.
10:04
So today I'm going to be talking about spoofing techniques in cloud brute force campaigns.
10:10
I wanted to start with this quote that's done the round for a few years.
10:14
Attackers don't break in, they log in.
10:16
And for me, this really captures the move towards identity as the attack surface.
10:21
So.

37 MINS LATER

47:12
Were these the same threat actor or are they just different actor clusters using similar techniques?

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.