#MVPBuzz #TechCommunity
youtu.be/fBD1ftf0PbA?...
🙏 Big thanks to @merill.net for having us - it was a pleasure to be part of the podcast. I hope everyone listening enjoyed it as much as we did recording it!
The Entra ID Attack & Defense Playbook
It’s free, community-driven, and packed with real detection logic and KQL queries.
🧵👇
🙏 Big thanks to @merill.net for having us - it was a pleasure to be part of the podcast. I hope everyone listening enjoyed it as much as we did recording it!
The Entra ID Attack & Defense Playbook
It’s free, community-driven, and packed with real detection logic and KQL queries.
🧵👇
The Entra ID Attack & Defense Playbook
It’s free, community-driven, and packed with real detection logic and KQL queries.
🧵👇
The Entra ID Attack & Defense Playbook
It’s free, community-driven, and packed with real detection logic and KQL queries.
🧵👇
- Includes both block & policy-application events from disruption policies, plus auto-response actions across related workloads
- Boost visibility into complex attacks
- Includes both block & policy-application events from disruption policies, plus auto-response actions across related workloads
- Boost visibility into complex attacks
Links:
- github.com/microsoftdoc...
- techcommunity.microsoft.com/blog/azurede...
Links:
- github.com/microsoftdoc...
- techcommunity.microsoft.com/blog/azurede...
I exported Entra security settings through APIs, parsed CA policies, and drafted a report with the Claude desktop. Early days, but looks promising! #CloudSec #MCP
lokka.dev/docs/intro/
I exported Entra security settings through APIs, parsed CA policies, and drafted a report with the Claude desktop. Early days, but looks promising! #CloudSec #MCP
lokka.dev/docs/intro/
Update on Feb 14, 2025: 'Within the past 24 hours, MS has observed Storm-2372 shifting to using the specific client ID for MS AuthBroker in the device code sign-in flow. Read the full story below 👇
www.microsoft.com/en-us/securi...
Update on Feb 14, 2025: 'Within the past 24 hours, MS has observed Storm-2372 shifting to using the specific client ID for MS AuthBroker in the device code sign-in flow. Read the full story below 👇
www.microsoft.com/en-us/securi...
www.microsoft.com/en-us/securi...
www.microsoft.com/en-us/securi...
techcommunity.microsoft.com/blog/securit...
techcommunity.microsoft.com/blog/securit...
github.com/Cloud-Archit...
Learn more about XSPM and Graph:
Deep Dive blog post on XSPM by @samilamppu.bsky.social
samilamppu.com/2024/04/25/m...
Blog posts by @fabian.bader.cloud
cloudbrothers.info/en/workshop-...
cloudbrothers.info/en/find-late...
Kusto Graph rocks! (3/3)
github.com/Cloud-Archit...
Learn more about XSPM and Graph:
Deep Dive blog post on XSPM by @samilamppu.bsky.social
samilamppu.com/2024/04/25/m...
Blog posts by @fabian.bader.cloud
cloudbrothers.info/en/workshop-...
cloudbrothers.info/en/find-late...
Kusto Graph rocks! (3/3)
techcommunity.microsoft.com/blog/microso...
techcommunity.microsoft.com/blog/microso...
techcommunity.microsoft.com/blog/microso...
techcommunity.microsoft.com/blog/microso...
techcommunity.microsoft.com/blog/securit...
techcommunity.microsoft.com/blog/securit...
techcommunity.microsoft.com/blog/securit...
techcommunity.microsoft.com/blog/securit...
red teaming 100 generative AI products'
www.microsoft.com/en-us/securi...
red teaming 100 generative AI products'
www.microsoft.com/en-us/securi...
@samilamppu.bsky.social and I have updated some content:
🔃 #EntraConnect: New capabilities by MDI sensor & XSPM
🎯 #AiTM: Attack scenarios on MDA sessions
🛡️ #MITRE: Updated TTP coverage & map
Check out the latest version:
github.com/Cloud-Archit...
@samilamppu.bsky.social and I have updated some content:
🔃 #EntraConnect: New capabilities by MDI sensor & XSPM
🎯 #AiTM: Attack scenarios on MDA sessions
🛡️ #MITRE: Updated TTP coverage & map
Check out the latest version:
github.com/Cloud-Archit...
Entra Connect: Added MDI enhancements and XSPM queries
AiTM: MDA section with Edge In-browser
MITRE: Updated heat map & TTPs
Check out the latest version 👉 github.com/Cloud-Archit...
Entra Connect: Added MDI enhancements and XSPM queries
AiTM: MDA section with Edge In-browser
MITRE: Updated heat map & TTPs
Check out the latest version 👉 github.com/Cloud-Archit...
techcommunity.microsoft.com/blog/securit...
techcommunity.microsoft.com/blog/securit...
Monitor user activities & system events with Security Copilot and Sentinel 👇
techcommunity.microsoft.com/blog/securit...
Monitor user activities & system events with Security Copilot and Sentinel 👇
techcommunity.microsoft.com/blog/securit...
techcommunity.microsoft.com/blog/microso...
techcommunity.microsoft.com/blog/microso...
Vielä olisi muutama paikka vapaana, jos event kiinnostaa nappaa itsellesi sisäänpääsy tapahtumaan linkin takaa 👇
www.meetup.com/microsoft-se...
Vielä olisi muutama paikka vapaana, jos event kiinnostaa nappaa itsellesi sisäänpääsy tapahtumaan linkin takaa 👇
www.meetup.com/microsoft-se...