ENTERPRISE AIInvestigateNOW
Storm-3168: Agentic-driven cloud attacks using compromised service principals
Microsoft Security Blog
Factual evidence
What the source reports
Microsoft detailed Azure cloud attacks by Storm-3168 using agentic methods and compromised service principals for reconnaissance.
Inspect the evidence
- Inclusion basis
- Enterprise AI
- Publisher and source type
- Microsoft Security Blog · ENTERPRISE AI
- Published by source
- 25 September 2026
- Collected by OneBench
- 26 Sept 2026, 09:01 UK
Stored source excerpt
Microsoft details JADEPUFFER-linked Azure reconnaissance, resource deletion, and credential access using compromised service principals, identifying the activity as associated with Storm-3168 and providing guidance for…
Short excerpt from the collected text, not the full source. Use the source link to read it in context.
The factual summary is a OneBench synthesis, not a quotation or independent verification. Collection time is not publication time. Open the source for its full context; related reporting can share the same underlying announcement.