Devin McLean
1.9K posts

Devin McLean
@devinmclean
SOC & cyber infrastructure manager. I hunt the badness alongside my team. Father of 3. I like video games. Engineer at heart.

Since we now can use Entra ID connect sync with a service principal, I thought I'd look into the new security measures. On hosts without a TPM, we can dump the cert+key. On hosts with TPM (second picture) we can use the key to create an auth assertion for roadtx to req tokens.







GraphRAG, a graph-based approach to retrieval-augmented generation (RAG) that significantly improves question-answering over private or previously unseen datasets, is now available on GitHub. Learn more. msft.it/6010l8lew



We have new members on the Cyber Safety Review Board (CSRB). We thank the outgoing members for their work and look forward to inviting four new members. Learn more: go.dhs.gov/3ZB


Use Entra ID Governance to govern your AD based (Kerberos) on-premises apps by using cloud security groups that are provisioned to AD with Microsoft Entra Cloud Sync. This capability is now GA! #Cloudsync learn.microsoft.com/entra/identity…

A 13 year old coded a botnet control framework that utilizes pastebin and github for control of hosts in red teaming… This makes the hacker in me so hopeful. Check out pastebomb when it’s dropped!










