IntNull0's profile picture. Dad, InfoSec nerd, US Army veteran

Mark

@IntNull0

Dad, InfoSec nerd, US Army veteran

Mark đã đăng lại

New post: focusing on the key biggest Microsoft 365 security considerations. READ: campbell.scot/microsoft-365-… When we talk about Microsoft 365 security, we are talking about two things: (a) securing Microsoft 365 the platform, (b) using Microsoft 365 security tooling.


Mark đã đăng lại

Here's my top 20 weaknesses in M365 based on experience consulting. I've seen most of these everywhere in varying mixtures. Public groups has been a problem in all but one org I've worked with. 1. Public Groups expose sensitive data 2. Upload from unmanaged devices 3. Download…


Mark đã đăng lại

New episode is out! - youtu.be/1VzT7CuWp3Y In episode 148, @Rhynorater gives us a crash course on Model Context Protocol. This episode is a MUST-watch!

ctbbpodcast's tweet card. MCP Hacking Guide (Ep. 148)

youtube.com

YouTube

MCP Hacking Guide (Ep. 148)


Mark đã đăng lại

Huntress reports that Gootloader is back, using custom WOFF2 fonts with glyph substitution to obfuscate filenames; exploiting WordPress comment endpoints for XOR-encrypted ZIPs; and shifting persistence to the Startup folder. huntress.com/blog/gootloade…

virusbtn's tweet image. Huntress reports that Gootloader is back, using custom WOFF2 fonts with glyph substitution to obfuscate filenames; exploiting WordPress comment endpoints for XOR-encrypted ZIPs; and shifting persistence to the Startup folder. huntress.com/blog/gootloade…

Mark đã đăng lại

Microsoft confirmed a bug in the October 2025 Update is causing BitLocker recovery on reboot. This issue affects Windows 11 25H2, 24H2 and even Windows 10. Mostly, business users are affected. If you don't have the BitLocker recovery key (always accessible via Microsoft…

WindowsLatest's tweet image. Microsoft confirmed a bug in the October 2025 Update is causing BitLocker recovery on reboot.

This issue affects Windows 11 25H2, 24H2 and even Windows 10. Mostly, business users are affected.

If you don't have the BitLocker recovery key (always accessible via Microsoft…

Mark đã đăng lại

If you haven't seen it, go check out the SecOps guide for Entra. It covers the operationalization of security across users, devices, applications and more. If securing Entra is part of your job description, this should be bookmarked. learn.microsoft.com/en-us/entra/ar…


Mark đã đăng lại

Researchers from Microsoft's DART team revealed SesameOp, a novel backdoor utilizing the OpenAI Assistants API for command and control, enabling stealthy communication and long-term persistence for espionage activities. #CyberSecurity #Malware microsoft.com/en-us/security…


Mark đã đăng lại

Don’t assume #BitLocker keys are escrowed to Entra ID/Intune by default. Run a regular scan with your script to ensure all devices have valid recovery keys, especially after imaging or Autopilot enrollment. Read more: systemcenterdudes.com/intune-bitlock… #MSIntune #EntraID #SCCM

scdudes's tweet image. Don’t assume #BitLocker keys are escrowed to Entra ID/Intune by default. Run a regular scan with your script to ensure all devices have valid recovery keys, especially after imaging or Autopilot enrollment. 

Read more: systemcenterdudes.com/intune-bitlock… 

#MSIntune #EntraID #SCCM

Mark đã đăng lại

How many of you have Sensitive Information Types that are coming back with too many false positives? Don't lie. 75% of you dont know what I'm talking about and the other 25% either dont know or know but havent addressed it yet :p Here's what you can do: Create a SharePoint…


Mark đã đăng lại

AdminSDHolder: the AD security feature everyone thinks they understand but probably don't. 😬 @JimSycurity went to the source code to debunk decades of misconceptions — including ones in Microsoft's own docs. Read more ⤵️ ghst.ly/3Lpmjzv


Mark đã đăng lại

We’re working on updating the disciplines of the Microsoft Security Adoption Framework (SAF) and wanted to get your feedback Current guidance is on aka.ms/SAF a 🧵

MarkSimos's tweet image. We’re working on updating the disciplines of the Microsoft Security Adoption Framework (SAF) and wanted to get your feedback

Current guidance is on aka.ms/SAF

a 🧵

Mark đã đăng lại

.@Office365 #Microsoft365 Sensitivity labels have a new way of grouping. It's called a new dynamic architecture, but it's really just a new way to display labels in apps. Here's the story: office365itpros.com/2025/10/29/sen…


Mark đã đăng lại

Blog post: Implementing Privileged Access Workstations (PAWs) – Benefits, Challenges, and #Security Considerations msendpointmgr.com/2025/09/16/imp… #PAW #Client

MSEndpointMgr's tweet image. Blog post:  Implementing Privileged Access Workstations (PAWs) – Benefits, Challenges, and #Security Considerations msendpointmgr.com/2025/09/16/imp… #PAW #Client

Mark đã đăng lại

MapUrlToZone (MUTZ) is a security-critical Windows component that determines whether a given path is local, on the intranet, or on the broader Internet – a classification that drives several security decisions across Windows – and is now being used in ways beyond its original…

Ever wondered how Windows decides if a file path is local, intranet, or Internet, and why it matters for security? Our latest blog from MSRC Senior Security Research Managers George Hughey (@ecthr0s) and Rohit Mothe (@rohitwas) dives deep into MapUrlToZone (MUTZ), the critical…

msftsecresponse's tweet image. Ever wondered how Windows decides if a file path is local, intranet, or Internet, and why it matters for security? Our latest blog from MSRC Senior Security Research Managers George Hughey (@ecthr0s) and Rohit Mothe (@rohitwas) dives deep into MapUrlToZone (MUTZ), the critical…


Mark đã đăng lại

Alrighty, ready to see something really cool? The evolution of Hurricane Melissa's mesovortices at peak strength.


Mark đã đăng lại

Here is an good introduction to AI Red Team published by Pillar Security. It gives you a broader understanding and methodology to start evaluate your AI systems, from AI Kill Chain, CFS, to practical example. pillar.security/ai-red-teaming…

fr0gger_'s tweet image. Here is an good introduction to AI Red Team published by Pillar Security. 

It gives you a broader understanding and methodology to start evaluate your AI systems, from AI Kill Chain, CFS, to practical example. 

pillar.security/ai-red-teaming…

Mark đã đăng lại

WDAC Managed Installers explained: Instead of trusting individual files, trust the process that installs them (ConfigMgr, Intune, etc.) Files get NTFS Extended Attributes → WDAC trusts them → No explicit rules needed Limitations & gotchas in our new blog 👇…


Loading...

Something went wrong.


Something went wrong.