BitFisk

127 posts

BitFisk

BitFisk

@BitFisk

Jhgg

Entrou em Kasım 2019
97 Seguindo2 Seguidores
BitFisk
BitFisk@BitFisk·
@DrAzureAD Even starlink on ships is starting to get stable <100ms, did you travel back in time or something? 🤣
English
0
0
1
179
Riot Adam Jackson
Riot Adam Jackson@AZJackson85·
Oh no, I may have picked the wrong build this season 😏😏😏
Riot Adam Jackson tweet media
English
44
1
182
31.5K
BitFisk
BitFisk@BitFisk·
@jloiselle1 @zer0trus7 @reprise_99 Considering its easier to find ops people than proper SecOps, market value which is dictated by supply and demand , states one is more valuable than the other
English
0
0
0
25
Matt Zorich
Matt Zorich@reprise_99·
If I was a blue teamer and an adversary had to use a zero-day to compromise my environment, I think I would probably ask for a raise, possibly before even invoking incident response. They use it on you it's a pretty great compliment.
English
3
15
134
47.1K
BitFisk
BitFisk@BitFisk·
@bbaskin Red team taking penetration test to the next level 😂
English
0
0
14
5.2K
BitFisk
BitFisk@BitFisk·
@fabian_bader If it truly is devicebound, then that is indeed awesome 😊 i will have to see and test it before i trust that something is not overlooked 😅
GIF
English
0
0
1
27
Fabian Bader
Fabian Bader@fabian_bader·
@BitFisk The current announced preview for Entra ID is limited to device bound passkeys. So it will never leave the device. One less thing to worry about 😉
English
2
0
1
264
Fabian Bader
Fabian Bader@fabian_bader·
What's your take on #passkeys in the enterprise? Any reservations, doubts, limitations you see? Regardless of your vote, please comment. #passkeys #EntraID #IDP
English
20
3
10
26K
BitFisk
BitFisk@BitFisk·
@fabian_bader Then i would be a lot less concerned. But in the current form i fear the consequences of having that being the security frontier for the enterprise identity 2/2
English
1
0
1
56
BitFisk
BitFisk@BitFisk·
@fabian_bader My biggest concern with passkeys is that the weakest link becomes the icloud account (or similair) which often is a personal account and thus often is subject to weaker security. If it was possible to restrict the pass key from being roamable through icloud etc 1/2
English
1
0
1
178
Dexter
Dexter@Am_dexter·
@rodtrent Can you share a working link?
English
2
0
2
85
BitFisk
BitFisk@BitFisk·
@rootsecdev @fabian_bader @NathanMcNulty First step for sure is to move configurations needed out of gpo to either intune or another Endpoint management tool. It is indeed a journey, but the end result will be a much smoother running machine (we hope, we still arent fully there yet 🙂)
English
1
0
1
142
rootsecdev
rootsecdev@rootsecdev·
For example reconfiguring AAD connect to no longer do hybrid join enforcement. Setting up new OU’s in AD without GPO enforcement. Taking inventory of your current GPO posture and ensuring you can do equivalent coverage from within Intune. When I look at these two community notes. That’s the type of stuff that I’d start thinking about to migrate over and it sounds like it may be a mess for some orgs to do.
English
3
0
1
949
rootsecdev
rootsecdev@rootsecdev·
Dear Microsoft, Please make up your minds... Sincerely everyone cc:@NathanMcNulty
rootsecdev tweet mediarootsecdev tweet media
English
2
8
51
9.4K
Joe Stocker
Joe Stocker@ITguySoCal·
In our last few IR engagements we have found “OfficeHome” a pretty reliable application for detecting threat actors, in particular when the DeviceID field is empty. Happy Hunting! #CyberSecurity #DFIR
English
6
11
134
44.6K
Jan Bakker
Jan Bakker@janbakker_·
Remember the time Azure AD did not support group nesting? 😅
English
4
0
26
10.4K
BitFisk
BitFisk@BitFisk·
@UlfLundh We did it personal. With a group enforcing passwordless as support helped the users one by one. Each in charge of their own area, with dashboard to follow progress
English
0
0
0
22
BitFisk
BitFisk@BitFisk·
@JefTek @sahilmalik @ITguySoCal Or just show the login window in a proxied iframe, allowing them to record the session and abuse the token? Very curious if that is covered aswell
English
0
0
0
13
Joe Stocker
Joe Stocker@ITguySoCal·
After watching this video, it appears that users will be required to scan a QR code to use a passkey stored on the phone. I hope the MDO team develops tech to detect malicious QR codes pretty quick as users who get comfortable scanning QR codes from personal devices are going to get owned. Current best practice is to train users to not scan QR codes since MDO doesn’t have ability to block malicious QR. so now we will have to untrain the users which will then hackers will exploit the confusion. It’s a tricky problem so I think a near field signal would be better than a QR scan.
Merill Fernando@merill

Did you know Microsoft Authenticator will soon become phishing resistant? Watch this two-minute demo of how it will work when it becomes available in a few months 👇 youtube.com/watch?v=wTLB0Y…

English
10
3
67
30.9K
BitFisk
BitFisk@BitFisk·
@patbatemansdong @PezRadar No. Players stop as it gets boring doing the same stuff after a while, even more so if there is no reward to chase. If drop rates went up it would just mean people would stop sooner
English
1
0
0
65
Paul Allen
Paul Allen@patbatemansdong·
@PezRadar Can you guys add bad luck protection to Duriel? I have done 700 runs without a shako or grandfather and a guy in my group just got both of them in 12 runs. This isn’t fun and it’s horrible game design and it’s why players quit.
English
1
0
0
90
BitFisk
BitFisk@BitFisk·
@EdgeAdsX @0gtweet @DrAzureAD @birdsarentreal That would be a terrible feature, imagine troubleshooting someone who wasnt quite sure and accidently put it in ultra ultra secure mode by swapping back and forth while thinking 😂
English
0
0
0
22
BitFisk
BitFisk@BitFisk·
@NathanMcNulty Which makes it fragile if the computer is not often (or ever) used for internet browsing, thus not regularly logging into edge. But the fact that it matters even if using outlook, seems rather silly when its a hybrid joined device where user is logged in with UPN allready :-)
English
1
0
1
121
BitFisk
BitFisk@BitFisk·
@NathanMcNulty What i mean is that even if the user is logged into pc which is hybrid joined and has active prt. It doesnt send device id for authentication through outlook, only if the user is logged into edge, then it correctly sends the device id. Which imho makes sense
English
1
0
1
114
Nathan McNulty
Nathan McNulty@NathanMcNulty·
Friendly reminder - device based policies in Conditional Access do not work in private mode or if browsers have not been configured properly (see Note in image) This is needed for registered/Entra joined states, compliance checks, and filter for devices #supported-browsers" target="_blank" rel="nofollow noopener">learn.microsoft.com/en-us/azure/ac…
Nathan McNulty tweet media
English
7
29
121
19.4K
BitFisk
BitFisk@BitFisk·
@FractalPrism @Qwik No its not.. the resson it felt awefull is that people could buy their character more powerfull with real money.. you cant in d4 as its only cosmetics, skins, so pretty much like all other games atm…
English
0
0
0
11
BitFisk
BitFisk@BitFisk·
@mattjay Got any good suggestions of some to apply to? :-) been looking for vendor neutral community’s for some proper sparring opportunities
English
0
0
0
24
Matt Johansen
Matt Johansen@mattjay·
Since I’ve been asked a lot - there is no 1 super secret chat room & I don’t own the invite capability of any of them. I’m in roughly a dozen such spaces among Signal, slack, discord and more. The point being, I trust the convos in these spots more than your rsa booth brochure
Matt Johansen@mattjay

Want to know an industry secret? Us infosec practitioners have private chatrooms where we don't let vendors in. We share intel, we talk about tools, and we advise what vendors to stay away from.

English
5
1
56
9.1K