BEGIN:VCALENDAR
VERSION:2.0
PRODID:Data::ICal 0.24
BEGIN:VEVENT
DESCRIPTION:   'Title: From square root to /root: escalating privileges in 
 Azure\n   containers with Python in Excel\n   Tags: DEF CON Official Talk 
 | Demo đź’» | Tool đź›  | Exploit đźŞ˛\n   When: Friday\, Aug 7\, 10:00 - 
 10:59 PDT\n   Where: LVCCW Level 1 Hall 3 903 (Main Track 5) and DCTV-5 - 
 [1]Map\n\n   Description:\n\n   Microsoft integrated Python into Excel\, g
 iving users more advanced\n   data analysis. The Python code is processed 
 in a cloud container and\n   returned as results. This sparks an immediate
  question: does it allow\n   remote code execution on Microsoft owned serv
 ers?\n\n   In this talk\, we'll dig into the various web applications and\
 n   components in the Python execution environment. We'll describe how we\
 n   discovered a privilege escalation vulnerability in the file upload\n  
  mechanism of this service\, which allowed us to gain root access within\n
    the container. Utilizing that\, we revealed the complete architecture\n
    of this solution. We will show how we discovered Microsoftâ€™s\n   inte
 rnal deployment configuration\, including key vaults\, database\n   server
 s\, account names\, tenant IDs\, and much more. We were even able\n   to e
 xecute code on the pilot servers of this product.\n\n   We also found how 
 to craft a special response to Excel\, resulting in\n   bypassing two secu
 rity boundaries (CVE-2026-45459): the trusted\n   records protection (â€śE
 nable Contentâ€ť warning) and the network\n   isolation protection.\n\n   
 We will expose features that werenâ€™t even announced yet and how they\n  
  might be exploited. Follow us in our journey from the first\n   â€śwhoami
 â€ť command\, through exfiltrating tailor-made Python\n   libraries\, and 
 eventually finding a vulnerability to achieve execution\n   as root!\n\n  
  https://i.blackhat.com/Asia-25/Asia-25-Carmel-The-Problems-of-Embedded-Py
 thon-in-Excel.pdf\n   https://www.netspi.com/blog/technical-blog/red-teami
 ng/a-first-look-at-python-in-excel/\n\n   SpeakerBio:  Ron Ben Yizhak\, Sa
 feBreach\n\n   Ron (@RonB_Y) is a security researcher at SafeBreach with 1
 1 years of\n   experience. He works in vulnerability research and has know
 ledge in\n   forensic investigations\, malware analysis and reverse engine
 ering. Ron\n   previously worked in the development of security products a
 nd spoke\n   several times at DEF CON\n\n   '\n\n   1. #LVCCW_Level1_Hall3
 \n\n\n
DTEND:20260807T175900Z
DTSTART:20260807T170000Z
LOCATION:DEF CON Talks - LVCCW Level 1 Hall 3 903 (Main Track 5) and DCTV-5
SUMMARY:From square root to /root: escalating privileges in Azure container
 s with Python in Excel
END:VEVENT
END:VCALENDAR
