Robert Schoneman

835 posts

Robert Schoneman

Robert Schoneman

@rschoneman

Views are entirely my own.

Philadelphia, PA Katılım Temmuz 2012
1.4K Takip Edilen124 Takipçiler
Jack O’Brien
Jack O’Brien@JackPhillyRE·
Seven retail spaces along Market East received new zoning permits this week. These properties are part of the HBSE/Comcast plans and will see everything from retail to sit-down restaurants to "public entertainment space." What would you want to see? The scoop below/in the bio
Jack O’Brien tweet mediaJack O’Brien tweet mediaJack O’Brien tweet mediaJack O’Brien tweet media
English
9
5
72
8.8K
Murray Hill Guy
Murray Hill Guy@MurrayHillGuy1·
US City Tier List: S tier: NYC, Miami, Austin A tier: Chicago, LA, San Diego, Charleston B tier: Nashville, Boston, Atlanta, Tampa, DC, Scottsdale C tier: Dallas, Charlotte, Houston, Philly, SF D tier: Denver, Seattle, Minneapolis, Portland, Kansas City, St. Louis, Columbus, Indianapolis F tier: suburbs
English
592
59
2K
810.3K
Robert Schoneman
Robert Schoneman@rschoneman·
@Jimmyking35 Ive asked the team and SEPTA and nobody knew anything about it. Lack of transit is why we don’t go.
English
0
0
0
24
Jimmy King
Jimmy King@Jimmyking35·
@rschoneman They used to run an extra train around 10:30 on game nights back to the city - I’ll try and confirm if that’s still a thing, it might not be tbh
English
1
0
1
449
Robert Schoneman
Robert Schoneman@rschoneman·
@future_of_music TMWin99 is the application. If you run a report you’ll use ZModem to download it. It’s the system underneath everything at TM.
English
0
0
4
83
Future of Music Coalition
Future of Music Coalition@future_of_music·
These new documents also show us what Ticketmaster's internal software terminal looks like. It seems to confirm trial testimony that suggested it was tech that looked like something out of the 80s. Hard to see how access to this back-end via API is desirable.
Future of Music Coalition tweet media
New York Times Music@nytimesmusic

Ticketing employees at Live Nation joked about trying to “gouge” people for parking and V.I.P. upgrades at concerts, calling fans “so stupid” for paying the inflated charges, according to internal messages released late Wednesday. nytimes.com/2026/03/12/art…

English
7
40
267
23.9K
John
John@JohnnyWalsh__·
Better late than never I suppose. “The second component is to assign officers to ride trains for their entire shift” 6abc.com/videoClip/1868…
English
5
11
84
13.2K
Robert Schoneman retweetledi
The Goddamned Penguin
The Goddamned Penguin@who_shot_jgr·
$250/barrel by next wednesday. $15/gallon, rationed gasoline. the total collapse of car culture and the suburban lifestyle. better rev up those bicycles or get ready to take the fuckin' bus folks
English
292
430
7.3K
713.6K
Robert Schoneman retweetledi
Nick McCleery
Nick McCleery@nick_mccleery·
@usgraphics The office desk phone being an intrusive, effectively unavoidable interruption is a feature and not a bug
English
3
6
202
14.9K
Robert Schoneman retweetledi
Alan Fisher
Alan Fisher@alanthefisher·
Fuck it, give Amtrak every piece of heritage equipment on the East Coast. I want 16 car regionals for the gas crisis You will be riding in a heavyweight coach from 1935 at 100mph from DC to NYC
English
9
16
441
5.9K
Robert Schoneman
Robert Schoneman@rschoneman·
@mindyisser They’re less on time than AA on the same routes. If you can live with a backpack and not picking a seat they’re often WAY cheaper. Seats are a bit hard and don’t recline and the legroom is… snug but I’m 6’ and have done five hours just fine. Avoid connections though.
English
0
0
1
187
mindy🌷
mindy🌷@mindyisser·
how much worse of an experience is flying frontier compared to american?
English
37
0
20
11.3K
Steven Sinofsky
Steven Sinofsky@stevesi·
Was just told Microsoft Sharepoint turned 25! Wow. I know most in the startup world never used it, but it made a dent in enterprise. The founding is an interesting story around the start of the internet and start of “enterprise” and corp alignment.
Steven Sinofsky tweet media
English
8
0
33
5.4K
Robert Schoneman retweetledi
EZ
EZ@IAMERICAbooted·
Don't want to listen to me? Listen to one of Microsoft premier Incident Responders. 👇
Matt Zorich@reprise_99

Having responded to probably hundreds of incidents at this point, from ransomware to APT's, in my experience, the lack of knowledge on how to adequately secure Entra applications and service principals continues to be the biggest knowledge gap most defending teams have. You should be able to securely configure apps, detect compromise of apps and understand how to investigate compromise of apps. It seems overwhelming at first, but it isn't. Get started like this Secure them: •Use managed identities where possible - negates the need for credential handling •Limit privilege - reduce both the permissions granted and add additional API specific restrictions (i.e don't grant read/write all to all SharePoint sites, just the ones an application needs to access). This includes pushing back on vendors or internal teams that request privilege not required •High privileged applications should have no direct owners - lower privileged users can be granted direct ownership of an app, don't do this, govern the ability to manage applications via Entra ID roles •Configure credential restrictions such as requiring shorter lived secrets or enforcing use of certificates •Remove unused apps and service principals, this can prevent existing high privileged apps being leveraged and reduces your supply chain compromise footprint for multitenant apps •Monitor risk events for service principals like you would users Detect compromise of them: •Alert on application creation or application credential creation - may be noisy in large environments, but a good starting point •Alert on credentials being added to service principals - credentials generally live on the application object, service principal credential creation should be rare •Alert on permission consent - this can detect not only malicious activity but permission creep •Alert on anomalous resource access - does your app usually access only Azure Storage, and suddenly it accesses Microsoft Graph? - this may indicate a compromised credential •Alert on anomalous ASN or location access - does your app usually access only from a specific ASN or country, and suddenly that changes? - this may indicate a compromised credential Many of these are covered by Defender for Cloud Apps and other tools out of the box, but it is worth ensuring you are covered down and what they actually mean. Investigate compromise of them: Know how to query the following logs and understand the events surfaced •Entra ID sign in data - filter on service principal sign in events via the Entra portal or Kusto in the Defender XDR portal •Entra ID audit logs - filter on events related to the service principal via the Entra portal or Kusto in the Defender XDR portal. Service principals can be used to further establish persistence, such as creation of users or additional service principals, rinse and repeat for any malicious additions to your environment •Microsoft Graph - was the compromised app used to access data via Microsoft Graph? You can query via the Defender XDR portal using Kusto to find these events •Defender for Cloud Apps - did the compromised app access other M365 services? You can query via the Defender XDR portal using Kusto to find these events •Unified Audit Log - you can retrieve the events related to the compromised app via the audit functionality inside the Defender XDR portal

English
0
3
39
8.4K
Robert Schoneman
Robert Schoneman@rschoneman·
@PJ_Marcum Do we still need all the clumsiness of SMBv3 over QUIC to make the share reliably accessible to users without a VPN?
English
1
0
2
428
John Marcum
John Marcum@PJ_Marcum·
We have been patiently awaiting the release of Microsoft Entra Kerberos authentication for cloud-only identities on Azure Files for several years. This is going to be a game changer for us, and I suspect many other orgs. Mapped drives have been our biggest hurdle during our journey to the cloud.
English
7
8
113
11.1K
Robert Schoneman
Robert Schoneman@rschoneman·
@_NotA_Bot_ The flashing beacons are useless. Drivers don’t stop because it doesn’t stay stop.
English
1
0
1
11
NotaBot
NotaBot@_NotA_Bot_·
Minor cross streets don't need all way stops when they cross major radial bus routes. The only downside is making it hard for pedestrians to cross those streets, but you can just install flashing beacons for pedestrians.
NotaBot tweet media
English
3
0
9
235
EZ
EZ@IAMERICAbooted·
idk who is who in this account. I'm going to be creating a new account. If anyone I normally interact with would like to come along, let me know.
English
83
0
92
2K