Asger.jpg
hackerkartellet.bsky.social
Asger.jpg
@hackerkartellet.bsky.social
Servus!

🇩🇰 In 🇩🇪

Senior Incident Responder trying to find the needle in the haystack at InfoGuard AG

https://twitter.com/hackerkartellet
https://infosec.exchange/@hackerkartellet
Lessons learned: Only allow approved external tenants to contact your tenant and lock down unused RMM tools. 3/3

References: learn.microsoft.com/en-us/micros... and learn.microsoft.com/en-us/manage...
IT Admins - Manage external meetings and chat with people and organizations using Microsoft identities - Microsoft Teams
For IT admins - Learn how to configure chat and meetings with people outside your organization who use Microsoft Entra ID, Microsoft Teams Essentials, or Skype.
learn.microsoft.com
December 4, 2024 at 12:32 PM
The TA were able to contact the user because they allowed all external tenants to contact them and allowed all traffic to Microsoft through their proxy for their M365. 2/3
IT Admins - Manage external meetings and chat with people and organizations using Microsoft identities - Microsoft Teams
For IT admins - Learn how to configure chat and meetings with people outside your organization who use Microsoft Entra ID, Microsoft Teams Essentials, or Skype.
learn.microsoft.com
December 4, 2024 at 12:32 PM
Der har også ligget et russisk kabel skib i noget tid i det irske hav www.navylookout.com/royal-navy-m... - kunne være et false flag for at få folk til at kigge dér imens man rodede med kabler i østersøen.
Royal Navy monitors Russian seabed spy ship Yantar loitering in Irish Sea | Navy Lookout
www.navylookout.com
November 18, 2024 at 9:04 PM
Munich, Eisbachwelle?
July 28, 2023 at 8:39 AM