I'm shaving my head again this year. Please consider donating to this great cause. Help me raise money for #childhoodcancer research with @StBaldricks.
True, but both have glaring misconfigurations (many default) that are years old and still being exploited. Kerberoasting, and device code flow to name a few.
Active directory is roughly twice the age of Entra (formerly Azure Active Directory). Roughly 26.5 years old to almost 13.5 years old.
Active Directory has had about 13 years MORE lifetime for researchers and threat actors to find vulnerabilities.
Chances are there will be more
We're not changing the name of Lake Ontario. Name it whatever you want at your leisure: gulfof.mapquest.com/lakeontario
(tag us so we can see your work 🙂)
I always see trusted locations being used as an exception to a policy instead of being used to provide additional protection on accounts excluded from other policies.
🔔 Stop bypassing MFA by adding your Office IP addresses to Conditional Access exclusions 🔔
Read this now on why you shouldn't do this > ourcloudnetwork.com/why-you-should…
Modern threats have evolved, and your justification for why you have done this no longer matters.
𝐘𝐨𝐮 𝐦𝐚𝐲