Supply Chain Risk in Axis Autodesk Revit Plugin Due to Exposed Azure Storage Credentials and Revit RCE Vulnerabilities (Research)
ID: d310d345-0116-55c9-9b1d-6e64b42487e6
STIX ID: report--d310d345-0116-55c9-9b1d-6e64b42487e6
Feed Name: Wiz Cloud Threat Landscape
Date Published: 2025-10-08
Date Updated: 2026-05-01
Author: [email protected] (Wiz Threat Research)
Researchers found cleartext Azure Storage keys and SAS tokens embedded in Axis Communications' signed .NET DLLs for an Autodesk Revit plugin, granting over-privileged access to containers hosting installers and RFA model files; coupled with multiple RCE vulnerabilities in Revit's RFA parsing, this created a viable supply-chain attack vector allowing attackers to upload tampered installers or weaponized RFA files to compromise downstream users until Axis issued patched plugin versions and rotated credentials.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
