NetSPI reported that Azure's built-in Anyscale Platform Administrator role granted unconstrained Microsoft.Authorization/roleAssignments/write and Microsoft.Authorization/roleAssignments/delete permissions. A principal assigned that role could create role assignments for itself or others, including the highly privileged Owner role, creating a subscription-level privilege-escalation path that conventional role-centric reviews could overlook.
Microsoft Security Response Center confirmed the finding reported on June 8, 2026, and removed the dangerous role-assignment permissions from the built-in role by June 22. The researchers also warned that a Microsoft-recommended ABAC condition intended to constrain Owner or User Access Administrator assignment can be bypassed by identities able to modify role definitions and create an unconstrained custom role; Azure administrators should review effective RBAC and ABAC permissions, restrict assignment scope, segment subscriptions, and enforce least privilege for built-in as well as custom roles.

Get the actors, campaigns, and ATT&CK mapping behind it.
5 events from the most recent confirmed update back to the earliest known activity.
MSRC marked the researchers' report as a duplicate and completed the case; the dangerous permissions had been removed by this point.
Microsoft remediated the built-in Anyscale Platform Administrator Role by removing Microsoft.Authorization/roleAssignments/write and Microsoft.Authorization/roleAssignments/delete. The remediated role definition showed an updated timestamp of June 17, 2026.
Microsoft Security Response Center confirmed the reported privilege-escalation behavior in the Anyscale Platform Administrator Role.
Researchers submitted an MSRC report that the built-in Anyscale Platform Administrator Role had unconstrained Microsoft.Authorization/roleAssignments/write and /delete permissions, allowing holders to assign privileged roles such as Owner.
Researchers reported that constrained Owner or User Access Administrator access combined with role-definition write permission could create and self-assign an unconstrained custom role. MSRC closed the report as Complete and by design.
Get the adversaries, campaigns, and ATT&CK mapping behind this technique, with detections ready to deploy.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.