Exploring the Vulnerabilities in Azure HDInsight: Data Access, Session Hijacking, and Payload Delivery
Azure HDInsight Flaws Expose Data Access, Session Hijacking, and Payload Delivery Introduction Recently, Orca Security, a cloud security firm, uncovered eight cross-site scripting (XSS) vulnerabilities in Azure HDInsight, a popular open source big data analytics service provided by Microsoft. These vulnerabilities, identified in various Apache services used by HDInsight, including Hadoop, Spark, Kafka, and Oozie,…