#azureadsecurity search results
Migrating to the Azure? Learn how to secure your Azure AD: zcu.io/kHxO #AzureADsecurity #cybersecurity #ITSec
Is Azure AD password protection enough? While it is better than nothing there are flaws in this Microsoft feature that leave businesses who rely on it vulnerable to attack. Learn more: bit.ly/3QKi3tf #azureadsecurity
A friend has published research demonstrating that #PrivilegedIdentityManagement (PIM) does 𝙣𝙤𝙩 mitigate the impact of a compromised user via their refresh token: #AzureAD #AzureADSecurity #M365 #Azure TL;DR in 🧵 (1/7)
I've been fielding some questions recently regarding this, and if it's worth using PIM at all in light of my writeup from earlier this year - codyburkard.com/blog/jitprivil…. In short, an attacker can fairly easily bypass PIM MFA and approver requirements.
codyburkard.com
Just-in-time privilege escalation - A silver token for bypassing PIM
Just-in-time privilege escalation - A silver token for bypassing PIM
#NetworkPenTest #AzureADsecurity EAST: Extensible Azure Security Tool securityonline.info/east-extensibl…
Awesome research from @Secureworks! Congrats on the finding and thank you for sharing details 👇 #AzureAd #AzureAdSecurity
1/2 - Our team @Secureworks discovered flaw which allowed persistence of user assignment on SAML Apps via backdoor OAuth2 App after the assignment was removed. The Flaw could be abused by chaining the backdoor app in specific flow combination secureworks.com/research/azure…
Always ensure the lifecycle of an App Registration’s redirect URI is the same as the Azure resource it points to. Wondering why? 👇 #AzureAD #AzureADSecurity
That's why you don't sync on-prem service accounts with #AzureAd 👇 #AzureADSecurity #M365 #Kerberos #AzureAdConnect #pentest #pentesting
Are you using Azure Seamless SSO? Want to know how to impersonate cloud users (think service accounts) via Kerberos after stealing the SSO machine account hash. I got you covered. trustedsec.com/blog/azure-ad-…
I published a blog post where I do dive into some aspects of how Azure AD multi-tenant applications can be abused by attackers (and some simple prototype detections) #AzureADSecurity #AzureAD #AzureSecurity #CloudSecurity soroganoth.com/post/research/…
soroganoth.com
Deep dive into some interesting security properties of Azure AD multi-tenant applications
Azure multi-tenant application security.
Azure AD incident response tool and an article on how to use it powershellgallery.com/packages/Azure… m365internals.com/2021/04/17/inc… #AzureAD #DFIR #AzureADSecurity
Transferring @Microsoft Authenticator tokens is by far the worst part about getting a new phone. Especially when you have 15 Azure AD accounts to re-register... The backup helps but you still have to go one-by-one. 🫠 #AzureADSecurity #MSAuthenticator
Transferring @Microsoft Authenticator tokens is by far the worst part about getting a new phone. Especially when you have 15 Azure AD accounts to re-register... The backup helps but you still have to go one-by-one. 🫠 #AzureADSecurity #MSAuthenticator
I published a blog post where I do dive into some aspects of how Azure AD multi-tenant applications can be abused by attackers (and some simple prototype detections) #AzureADSecurity #AzureAD #AzureSecurity #CloudSecurity soroganoth.com/post/research/…
soroganoth.com
Deep dive into some interesting security properties of Azure AD multi-tenant applications
Azure multi-tenant application security.
That's why you don't sync on-prem service accounts with #AzureAd 👇 #AzureADSecurity #M365 #Kerberos #AzureAdConnect #pentest #pentesting
Are you using Azure Seamless SSO? Want to know how to impersonate cloud users (think service accounts) via Kerberos after stealing the SSO machine account hash. I got you covered. trustedsec.com/blog/azure-ad-…
Awesome research from @Secureworks! Congrats on the finding and thank you for sharing details 👇 #AzureAd #AzureAdSecurity
1/2 - Our team @Secureworks discovered flaw which allowed persistence of user assignment on SAML Apps via backdoor OAuth2 App after the assignment was removed. The Flaw could be abused by chaining the backdoor app in specific flow combination secureworks.com/research/azure…
Is Azure AD password protection enough? While it is better than nothing there are flaws in this Microsoft feature that leave businesses who rely on it vulnerable to attack. Learn more: bit.ly/3QKi3tf #azureadsecurity
A friend has published research demonstrating that #PrivilegedIdentityManagement (PIM) does 𝙣𝙤𝙩 mitigate the impact of a compromised user via their refresh token: #AzureAD #AzureADSecurity #M365 #Azure TL;DR in 🧵 (1/7)
I've been fielding some questions recently regarding this, and if it's worth using PIM at all in light of my writeup from earlier this year - codyburkard.com/blog/jitprivil…. In short, an attacker can fairly easily bypass PIM MFA and approver requirements.
codyburkard.com
Just-in-time privilege escalation - A silver token for bypassing PIM
Just-in-time privilege escalation - A silver token for bypassing PIM
Always ensure the lifecycle of an App Registration’s redirect URI is the same as the Azure resource it points to. Wondering why? 👇 #AzureAD #AzureADSecurity
Azure AD incident response tool and an article on how to use it powershellgallery.com/packages/Azure… m365internals.com/2021/04/17/inc… #AzureAD #DFIR #AzureADSecurity
Migrating to the Azure? Learn how to secure your Azure AD: zcu.io/kHxO #AzureADsecurity #cybersecurity #ITSec
Migrating to the Azure? Learn how to secure your Azure AD: zcu.io/kHxO #AzureADsecurity #cybersecurity #ITSec
Is Azure AD password protection enough? While it is better than nothing there are flaws in this Microsoft feature that leave businesses who rely on it vulnerable to attack. Learn more: bit.ly/3QKi3tf #azureadsecurity
Something went wrong.
Something went wrong.
United States Trends
- 1. Steelers 50.9K posts
- 2. Rodgers 20.8K posts
- 3. Chargers 34.8K posts
- 4. Tomlin 8,047 posts
- 5. Schumer 214K posts
- 6. #BoltUp 2,833 posts
- 7. Keenan Allen 4,566 posts
- 8. Resign 100K posts
- 9. #HereWeGo 5,599 posts
- 10. Tim Kaine 16.7K posts
- 11. #RHOP 6,715 posts
- 12. Herbert 11.3K posts
- 13. Durbin 23.9K posts
- 14. Gavin Brindley N/A
- 15. #TalusLabs N/A
- 16. #ITWelcomeToDerry 4,183 posts
- 17. Ladd 4,322 posts
- 18. Angus King 14.1K posts
- 19. Jaylen Warren 1,881 posts
- 20. 8 Dems 6,324 posts