home.social

#defenderforcloudapps — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #defenderforcloudapps, aggregated by home.social.

fetched live
  1. Just a heads up - Microsoft Defender for Cloud Apps is incorrectly blocking multiple legitimate domains, certs, and cloud apps. Microsoft's issue ID is DZ1231199 (admin.cloud.microsoft#/serviceheal...). #Microsoft #Defender #Outage #DefenderForCloudApps

    admin.cloud.microsoft/#/servicehealt...

  2. Just a heads up - Microsoft Defender for Cloud Apps is incorrectly blocking multiple legitimate domains, certs, and cloud apps. Microsoft's issue ID is DZ1231199 (admin.cloud.microsoft/#/servic).

    More discussion on r/sysadmin subreddit here:

    reddit.com/r/sysadmin/comments

    #Microsoft #Defender #Outage #DefenderForCloudApps

  3. Protecting OAuth is important and it's been flying under many admins radar for far too long. Follow this article and you will have now prevented misleadingly named apps, potentially malicious apps, apps with misleading publisher names, apps performing unusual amounts of file downloads, the addition of credentials to OAuth, and apps with a strange ISP for an OAuth.

    #M365 #entraID #defenderforcloudapps #MSP #ITSP
    bit.ly/48tEYQH

  4. Protecting OAuth is important and it's been flying under many admins radar for far too long. Follow this article and you will have now prevented misleadingly named apps, potentially malicious apps, apps with misleading publisher names, apps performing unusual amounts of file downloads, the addition of credentials to OAuth, and apps with a strange ISP for an OAuth.

    #M365 #entraID #defenderforcloudapps #MSP #ITSP
    bit.ly/48tEYQH

  5. Protecting OAuth is important and it's been flying under many admins radar for far too long. Follow this article and you will have now prevented misleadingly named apps, potentially malicious apps, apps with misleading publisher names, apps performing unusual amounts of file downloads, the addition of credentials to OAuth, and apps with a strange ISP for an OAuth.

    #M365 #entraID #defenderforcloudapps #MSP #ITSP
    bit.ly/48tEYQH

  6. Protecting OAuth is important and it's been flying under many admins radar for far too long. Follow this article and you will have now prevented misleadingly named apps, potentially malicious apps, apps with misleading publisher names, apps performing unusual amounts of file downloads, the addition of credentials to OAuth, and apps with a strange ISP for an OAuth.

    #M365 #entraID #defenderforcloudapps #MSP #ITSP
    bit.ly/48tEYQH

  7. Automatically disrupt adversary-in-the-middle (AiTM) attacks with Microsoft XDR

    Microsoft announced expansion of automatic attack disruption to include adversary-in-the-middle attacks (AiTM) attacks, in an addition to the previously announced public preview for business email compromise (BEC) and human-operated ransomware attacks.

    techcommunity.microsoft.com/t5

    #microsoft #email #business #AiTM #bec #xdr #azure #soc #securityplatform #defender #defenderforidentity #defenderforcloudapps #defenderforendpoint #microsoft365defender #cloudsecurity #securityanalytst

  8. Also be sure to turn on these monitoring policies in #DefenderForCloudApps so you can #CatchTheHacker before they get too deep, whether you switch to #Kerberos or not. #NetworkSegregation is also a great #LayeredDefense method to ensure if one system is compromised the attacker can't use #SMBtraversal to get to all your computers, globally. #EternalBlue source code is still being used to get to #DCs via #Trikbot evolutions, after #Phishing a user with #LocalAdmin privileges, to execute #mimikatz against #ActiveDirectory to steal all the objects. #YesThisHappened