pebes

Some stuff to read … learn.microsoft.com/de-de/grap #Microsoft #Azure #GraphAPI Reference with explanations for each privilege…

Know what your #enemy does:

microsoft.github.io/Azure-Thre

#Microsoft #M365 #Threat-Matrix shows how attackers work from Initial Access to Persistence.

How does DevSecOps work?
Not very Well ...
datadoghq.com/state-of-devseco

Wondering about E-Mail-Security configuration regarding senders and their authentication? #BSI TR-03182 is here to safe your day:

bsi.bund.de/SharedDocs/Downloa

BSI-compliant e-mail authentication involves #SPF #DKIM #DMARC - great to have it standardized now.

Find out what‘s happening in your tenant using the #Microsoft Unified Audit Log to identify malicious activities:

techcommunity.microsoft.com/t5

Great to read: #Microsoft IR Team on Common Attacks against identities and recommendations to impede them.

microsoft.com/en-us/security/b

Pretty cool next step to optimize phishing - using Microsoft DevTenants with custom domains:
badoption.eu/blog/2023/12/03/P

Phishing from within .. so to say .. and with the trust everyone puts into *.protection.outlook.com senders.

Great post about current #Microsoft #Azure / #M365 attack tooling including #evilginx and #roadtools.

The posting also describes the automation from capturing tokens to exfiltrate data - good luck defenders when not automating the defense …

trustedsec.com/blog/the-trifor

How to manage your #M365 tenant configuration? Using desired state machine of course: microsoft.github.io/Microsoft3
A #PowerShell Module that helps to automate tasks in the #Microsoft 365 World including Import and Export of configuration.

#Microsoft Release Updates to the #Defender Attack Surface Reduction rules and docs: learn.microsoft.com/en-us/micr

#ASR provides additional protection against specific attacks - if you use #MDE as primary AV solution. It's worth a try.
#ransomware #infosec

Tricking #Fingerprint readers? Nice idea and Write up: blackwinghq.com/blog/posts/a-t
The attack does Not Fake a finger, but changes the database used by the Reader for #dell, #lenovo and #microsoft surface.

#infosec #informationsecurity

Learn how to #secure you #M365 / #Azure Tenant from scratch in under 3 hours with this #Udemy course: udemy.com/course/microsoft-clo
All #security basics hands-on explained in #Entra ID!

There are many lists with #Cybersecurity #BlackFriday offers. The most comprehensive one right now seems to be: github.com/0x90n/InfoSec-Black

Attacking #Windows environments using by relaying Kerberos - still a topic - github.com/cube0x0/KrbRelay

Crazy days regarding #OpenAI and #Microsoft - theverge.com/2023/11/20/239689
Managing OpenAI with just a few people left in the company? Hard work ...

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst