securityn3rd.bsky.social
@securityn3rd.bsky.social
Hmm..

A Conditional Access Policy in Entra ID which only require a compliant device can be bypassed using Intune Portal client ID and a special redirect URI.

github.com/zh54321/PoCE...
GitHub - zh54321/PoCEntraDeviceComplianceBypass: Simple pure PowerShell POC to bypass Entra / Intune Compliance Conditional Access Policy
Simple pure PowerShell POC to bypass Entra / Intune Compliance Conditional Access Policy - zh54321/PoCEntraDeviceComplianceBypass
github.com
December 27, 2024 at 6:58 PM
Reposted
Microsoft's first post on Bluesky and it's full of bliss
We've always been a fan of blueskies.
December 6, 2024 at 2:58 AM
C/P Huntress

A sobering dose of Dark Web 💊
Over the weekend a threat actor was selling access to a German IT company with over 70 million dollars in revenue-- but only a $800 price tag 😵‍💫
They offer access via Fortinet, likely from any number of the recent CVEs...
No other users have responded.
November 27, 2024 at 9:05 AM