Lukas Beran
banner
lukasberan.com
Lukas Beran
@lukasberan.com
Senior Security Researcher (DART) at Microsoft. Opinions are my own. #MSIncidentResponse #DART #Microsoft365 #EntraID #DefenderXDR #Sentinel
That's a common and huge security risk that most admins do not know about. I wrote a blog post about it. www.cswrld.com/2024/11/how-...
How to disable Self-Service Password Reset for administrators
Self-service password reset can be a useful feature that allows users to access their account in case they forget their password. On the other hand, it is potentially risky, as...
www.cswrld.com
September 28, 2025 at 4:39 AM
It's a year of increasing revenues.
September 22, 2025 at 8:03 PM
And the new aluminum iPhones that are ugly and extremely susceptible to damage 🙄 This year is really not the best iPhone year.
September 22, 2025 at 8:02 PM
Hlavně bych řekl běžte k volbám a volte kohokoliv kromě Babiše, Okamury a komoušů. Jestli to budou Piráti, Spolu nebo STAN už v této situaci není až tak důležité. Hlavně ať sbírají body nějaké normální demokratické pro západní strany.
September 20, 2025 at 7:31 AM
Reposted by Lukas Beran
IMHO - Worry less about how long tokens are valid for, worry more about protecting the tokens, both on the client and during authentication

Obviously we need phishing resistant auth, but also focus on client hardening (app control, EDR, etc.) and VPN/ZTNA with enforced CAE
September 14, 2025 at 12:48 AM
If you want to update applications on managed computers, you must manually create a new version of the given application and deploy it to all computers. However, this is quite a lot of manual work, and you also have to monitor the availability of new versions of installed applications.
August 29, 2025 at 11:55 AM
Why do more organizations choose Microsoft Defender for Endpoint every year?
- AI-powered protection across platforms — Windows, Linux, macOS, Android, iOS, IoT
- Pre-breach exposure management with attack path analysis and scoring
- Attack disruption that automatically contains threats in real time
August 28, 2025 at 7:48 PM
It is important for organizations to prioritize intrusion prevention but also ensure that the right configurations are in place to identify the source of any intrusion or incident.
August 27, 2025 at 3:20 PM