Tech Brandon

2.8K posts

Tech Brandon banner
Tech Brandon

Tech Brandon

@TechBrandon

Father. Engineer. Learner. Lurker. AD, Entra/Azure & enterprise security specialist. Senior Security Consultant @trustedsec. Fellow Human Being.

Katılım Ağustos 2011
413 Takip Edilen1.2K Takipçiler
Tech Brandon
Tech Brandon@TechBrandon·
If you haven't already checked it out, make sure to read my latest @TrustedSec blog introducing Passkey Path. A new interactive blogging approach I'm trying out. It's built like a choose-your-own-adventure guide. trustedsec.com/blog/finding-y…
English
0
0
3
747
Tech Brandon
Tech Brandon@TechBrandon·
@NathanMcNulty @UK_Daniel_Card I'm not in love with the wording but I think what I'm most concerned with is the fact that MFA is only required "when necessary". What does that even mean?
English
1
0
2
96
Nathan McNulty
Nathan McNulty@NathanMcNulty·
If you do not have Entra P1+ licensing, please leave Security Defaults enabled - it is the best security you will get This poorly written paragraph is trying to say we are wrong to think only admins need MFA It was written in 2019 when today's common knowldge wasn't as common
rootsecdev@rootsecdev

If you are using security defaults in your Entra ID environment.. Get off of it. You should have "zero trust" in security defaults with statements like these. #require-users-to-do-multifactor-authentication-when-necessary" target="_blank" rel="nofollow noopener">learn.microsoft.com/en-us/entra/fu…

English
6
7
52
7K
Tech Brandon retweetledi
rootsecdev
rootsecdev@rootsecdev·
If you are using security defaults in your Entra ID environment.. Get off of it. You should have "zero trust" in security defaults with statements like these. #require-users-to-do-multifactor-authentication-when-necessary" target="_blank" rel="nofollow noopener">learn.microsoft.com/en-us/entra/fu…
rootsecdev tweet media
English
4
9
71
21.6K
Tech Brandon
Tech Brandon@TechBrandon·
Ever wonder what the difference is between a yubikey and a passkey stored in your password safe? Do they offer the same security benefits? Which should you use and for what purpose? Passkey Path has your answers and more. techbrandon.github.io/passkey-path/s…
English
0
1
7
1.7K
Tech Brandon
Tech Brandon@TechBrandon·
@DebugPrivilege TBH it's been a productivity dream but I find myself getting distracted by token reset and trying to maximize time but doing independent work while it's working on another task. Because it works so quickly, I'm finding that my non AI tasks are suffering.
English
0
0
0
59
DebugPrivilege
DebugPrivilege@DebugPrivilege·
How has AI impacted your workflow in terms of efficiency and productivity?
English
5
0
2
1.4K
Tech Brandon
Tech Brandon@TechBrandon·
I was going to wait until next week but apparently it's #WorldPasskeyDay so I'll celebrate by introducing Passkey Path, a choose-your-own-adventure guide flexible enough for a quick read of only passkey content relevant to you. Let me know what you think! techbrandon.github.io/passkey-path/
English
0
3
10
2.6K
rootsecdev
rootsecdev@rootsecdev·
Trying to get some ideas for a weird 20 minute talk
rootsecdev tweet media
English
3
0
2
536
shellgio_
shellgio_@shellgio_·
@TechBrandon Your session looks really nice, wish I could attend
English
1
0
1
17
Tech Brandon retweetledi
TrustedSec
TrustedSec@TrustedSec·
Sometimes you don't need to build the nest yourself. In this blog, @Coontzy1 explains how trusted Group Policy UNC paths can be turned into code execution and NTLM relay without building rogue GPO infrastructure or modifying SYSVOL. Read it now! hubs.la/Q04d-LsP0
English
1
36
79
5.9K
Tech Brandon retweetledi
sudox
sudox@kmcnam1·
sudox tweet media
ZXX
67
286
4.8K
77.4K