#azuredevopssecurity search results

Azure Active Directory (AAD) attacks rely on exploiting weak passwords and inadequate MFA configurations. Implement strong password policies, enable multi-factor authentication, and regularly rotate user credentials to prevent these types of threats from taking hold. Add…


Get all Azure DevOps Security Code & Infrastructure as code recommendations with #KQL github.com/alexverboon/Hu… #AzureDevOpsSecurity #CodeAnalysis

alexverboon's tweet image. Get all Azure DevOps Security Code & Infrastructure as code recommendations with #KQL
github.com/alexverboon/Hu…
#AzureDevOpsSecurity #CodeAnalysis

For almost a year, invisible password spraying could be performed against any #Azure tenant due to a vulnerability in #MicrosoftGraph. In our latest blog, @nyxgeek walks us through how these attacks could have been carried out. Read it now! hubs.la/Q02vpTlN0


This is a #mustKnow resource for every Azure Architect [Documentation] Azure security best practices and patterns learn.microsoft.com/en-us/azure/se… #MicorsoftAzure #BestPractices #CyberSecurity #shiftavenue

david_das_neves's tweet image. This is a #mustKnow resource for every Azure Architect
[Documentation] Azure security best practices and patterns
learn.microsoft.com/en-us/azure/se… 

#MicorsoftAzure #BestPractices #CyberSecurity #shiftavenue

Azure AD - Attack and Defense Playbook This publication is a collection of various common attack scenarios on Azure Active Directory and how they can be mitigated or detected. • Password Spray • Consent Grant • Service Principals in Azure DevOps Pip… t.me/hackgit/8158

hack_git's tweet image. Azure AD - Attack and Defense Playbook

This publication is a collection of various common attack scenarios on Azure Active Directory and how they can be mitigated or detected.

• Password Spray
• Consent Grant
• Service Principals in Azure DevOps Pip… t.me/hackgit/8158

Reminder my top 4 things to do in Azure to prevent you from getting hacked. - deploy MFA with number matching - implement Azure AD password protection - deploy hybrid azure AD join/require in conditional access - FIDO2 your admins

Thought this would be a good time to share some thoughts around this. 👇#Azure #Cloud #infosec “Offensive/Defensive Measures for Azure IPv6 support” by Root ♊ link.medium.com/ss0BoGbCExb

rootsecdev's tweet image. Thought this would be a good time to share some thoughts around this. 👇#Azure #Cloud #infosec 

“Offensive/Defensive Measures for Azure IPv6 support” by Root ♊
link.medium.com/ss0BoGbCExb


@Secureworks just released a threat analysis regarding flaws our team found in #AzureAD Pass-through Authentication (PTA). secureworks.com/research/azure… The flaws allow threat actors to: * Gather credentials * Login with invalid credentials * Conduct DoS attacks 1/3

DrAzureAD's tweet image. @Secureworks just released a threat analysis regarding flaws our team found in #AzureAD Pass-through Authentication (PTA). 

secureworks.com/research/azure…

The flaws allow threat actors to:
* Gather credentials
* Login with invalid credentials
* Conduct DoS attacks

1/3

I have daily conversations with IT administrators who manage #Azure Tenants but often do not have the proper security knowledge. One of my recommendations is the @CISecurity "Securing Microsoft Azure" Guide, with step-by-step instructions for hardening: cisecurity.org/benchmark/azure

malmoeb's tweet image. I have daily conversations with IT administrators who manage #Azure Tenants but often do not have the proper security knowledge. 

One of my recommendations is the @CISecurity "Securing Microsoft Azure" Guide, with step-by-step instructions for hardening:

cisecurity.org/benchmark/azure

Azure and GitHub are proud to introduce more ways to build secure apps on hardened dev environments. Secure your GitHub Actions workflows for Azure deployment: aka.ms/IgnIte21DevSec… #devsecops #appsec #shiftleft


Worth a look. [Repo] Azure AD - Attack and Defense Playbook github.com/Cloud-Architek… #AzureAD #AAD #MicrosoftAzure #CyberSecurity

david_das_neves's tweet image. Worth a look.
[Repo] Azure AD - Attack and Defense Playbook
github.com/Cloud-Architek…

#AzureAD #AAD #MicrosoftAzure #CyberSecurity

EXCLUSIVE: Newly discovered #Azure flaw lets attackers brute-force Active Directory credentials in an undetected manner. At this time, there's no way to easily block the endpoints used by Seamless SSO. #Microsoft seems to consider this a "design" choice. arstechnica.com/information-te…


Really nice overview of security defaults in Azure that every company should look at Azure AD Attack of the Default Config pentestpartners.com/security-blog/…


Adopting DevSecOps doesn't have to be hard. Take a look at these 6 tips for integrating security into your DevOps practices: aka.ms/DevSecOpsPaper/ #DevSecOps #AppSec #cve #shiftleft #DevOps


Microsoft has published an #AzureAD security operations guide. It covers identity security configurations and their monitoring (incl. user/privileged accounts, apps, devices, infrastructure). Very recommended to read for #SecOps and identity architects. docs.microsoft.com/en-us/azure/ac…


No results for "#azuredevopssecurity"

Get all Azure DevOps Security Code & Infrastructure as code recommendations with #KQL github.com/alexverboon/Hu… #AzureDevOpsSecurity #CodeAnalysis

alexverboon's tweet image. Get all Azure DevOps Security Code & Infrastructure as code recommendations with #KQL
github.com/alexverboon/Hu…
#AzureDevOpsSecurity #CodeAnalysis

Loading...

Something went wrong.


Something went wrong.


United States Trends