It appears Microsoft quietly mitigated most of the risk of the "Intune company portal" device compliance CA bypass by restricting the scope of Azure AD graph tokens issued to this app, making them almost useless for most abuse scenarios. Thx @domchell for the heads up.
Microsoft has uncovered an attack that exploits critical vulnerabilities in OpenMetadata to gain access to Kubernetes workloads and leverage them for cryptomining activity. Get our analysis, IOCs, and investigation guidance: https://t.co/SwAVuBMxbR
BOOM!!!! 😎 Just published the official Copilot for Security GitHub Community!!! LOOOOTS of prompting samples, guidelines, playbooks, plugins, workshops and much more 🔥 https://t.co/iNtq3MJr12 #GitHub#Cybersecurity#CopilotForSecurity#Copilot#infosec
Protect your organization with the help of Microsoft Copilot, now available for security. Check out this blog post to explore more of the top prompts already being used: https://t.co/o15ob4gug2 #MicrosoftCopilot#GenAI
Kicking off @Microsoft#Sentinel in the Field ‼️
In this episode @Crisromeo18 and myself talk to Nayef Yassin about the new Microsoft Sentinel Repositories feature to manage your security content as code. 🛡️🚀
@msftsecurity#devops#iac#devsecops
https://t.co/PMV8Lzdhvp
🚨 Learning how to install #Sysmon for Linux 🐧 & send security events to #AzureSentinel in a research lab environment!! 🧪 #MSTIC#Microsoft
📡 Sysmon (SysinternalsEBPF) -> Syslog -> SIEM 🚀
✅ Scripts
✅ ARM templates
✅ Sysmon configs and more..
https://t.co/juoMCueKU5
Today, Microsoft is open sourcing Cloud Katana, a cloud-native serverless application built on the top of Azure Functions to assess security controls in the cloud and hybrid cloud environments. Read about the design principles and learn how to deploy: https://t.co/B0G6BxUeaM
Just uploaded two long awaited Student Use Benefits licensing diagrams (in pdf) to my GitHub repo:
https://t.co/I1qkbMr65P
Notes:
1. PNG and Visio versions will come with the next major update.
2. Refer to the Product Terms for full Student Use Benefit details.
#Microsoft365
I'm very pleased to announce the December 2020 update to my #Microsoft365 licensing diagrams is now on GitHub. This is a large update to the previous diagrams so please read the Change Log for further details. Future updates will be smaller & more regular.
https://t.co/Bxii2Mjyp5
You want to get started with "Advanced hunting"? Come and learn the rich KQL query language to hunt across your data by watching this series "Tracking the adversary" https://t.co/guKfVssuIu #threathunting#cybersecurity#threatprotection#xdr
Today is an exciting day! We're expanding the scope of this social channel beyond Microsoft Defender for Endpoint to cover all the products that are part of our SIEM & XDR solutions. Thank you to our many fans for being part of this journey! Learn more at https://t.co/Ogx3e6pa5W
MITRE Engenuity’s Center for Threat-Informed Defense published a FIN6 adversary emulation plan, a collection of threat intelligence, MITRE ATT&CK data, supporting scripts, utilities. Microsoft is proud to be part this industry-wide collaborative project. https://t.co/11v8EdmLQP
Watch the fifth episode of #ASCInTheField with host @yuridiogenes and learn about the continuous export and workflow automation features in Azure Security Center:
https://t.co/bTSRfJYV7H