Anthony Peyton

4K posts

Anthony Peyton

Anthony Peyton

@arpeyton

I do Microsoft 365 and security stuff

Cincinnati, Ohio เข้าร่วม Eylül 2017
1K กำลังติดตาม169 ผู้ติดตาม
Anthony Peyton
Anthony Peyton@arpeyton·
@Rabid_F30 @SonsOfLibertyGW It’s up to the citizens in these states to fight for their own freedom. Nobody is going to risk their life or freedom for people who aren’t willing to do it themselves first.
English
0
0
0
10
Tim McVeigh
Tim McVeigh@Rabid_F30·
@SonsOfLibertyGW Keep sending them. What would the forefathers have done in this situation? Same goes for Virginia. Any law against the 2nd amendment is void.
English
1
0
2
882
SOLGW
SOLGW@SonsOfLibertyGW·
It was bittersweet but morale was high. The SOLGW armorer & shipping crews were eager to work nights to air drop hundreds of lower halves & rifles into Massachusetts before the ban took effect. The last SOLGW guns to "legally" enter the birthplace of the Original Sons of Liberty!
English
74
359
4.6K
150.2K
International Cyber Digest
International Cyber Digest@IntCyberDigest·
‼️🇫🇷 MAJOR OPSEC FAILURE: The French aircraft carrier Charles de Gaulle was located by Le Monde journalists through the Strava app of an officer jogging on the ship's deck…
International Cyber Digest tweet media
English
259
1.1K
10.3K
3.2M
Anthony Peyton
Anthony Peyton@arpeyton·
The annoying part IMO is that we had perfectly function PowerShell cmdlets that were efficient and solved problems in single lines that have now been replaced by tomes of graph documentation, the horrors of the mggraph wrapper, authorization scopes, and a million other points of annoyance. The majority of M365 admins are not developers and will not take up learning how to write their own tools in their free time to perform basic administrative tasks.
English
0
0
1
29
Anthony Peyton
Anthony Peyton@arpeyton·
@kmcnam1 Then make him manage multiple inboxes and log emails into HubSpot/Salesforce with New Outlook.
English
0
0
3
185
sudox
sudox@kmcnam1·
sudox tweet media
ZXX
29
71
1K
18.5K
Anthony Peyton
Anthony Peyton@arpeyton·
@PennStationSubs @TheDegenWeekly I had no idea Penn Station was an Ohio chain, or that 36 states have to suffer through the lack of their delicious Chicken Teriyaki subs. Also, those chocolate chip cookies, fresh cut fries … and now I’m hungry.
English
1
0
0
36
Jeff Sunday
Jeff Sunday@TheDegenWeekly·
Trying a cheesesteak from some place called Penn Station Subs. Never heard of it - I think it’s an Ohio thing? Looks good! Will be back with a review.
Jeff Sunday tweet media
English
233
8
660
418.9K
Anthony Peyton
Anthony Peyton@arpeyton·
@egosumdns @supersat @0xMatt This is the answer. Strict alignment and hygiene is key. Way too many people just throw p=none into DMARC without realize it does just that (nothing) and almost as many believe that p=reject is enough, and it’s not.
English
0
1
2
157
Matt Linton
Matt Linton@0xMatt·
Confused that you have strong DKIM/DMARC rules & configured SPF, yet people are still spoofing your CEO's mail in fraud attempts? This may be because you included Salesforce, Mailchimp, or other SaaS in your SPF. Abusers can use free/fraudulent accounts there to spam "as" you.
English
14
33
402
32.4K
Anthony Peyton
Anthony Peyton@arpeyton·
They also stole his money. It would violate community guidelines to explain what these deputies deserve, in the history and tradition of 1776-1791, so I’ll just say they should all be fired, forced to pay restitution to him personally, and prosecuted to the fullest extent of the law.
English
0
0
1
255
Bill Cunningham
Bill Cunningham@Willie700WLW·
Afroman found NOT liable for monetary damages to Adams County Sheriff Deputies who wrongfully damaged his home and ate his lemon pound cake during a search..Finding nothing..So.. the injured party prevails .. I stand with Afroman… he is free.. In your view… is this justice.??
English
36
13
343
17.7K
Anthony Peyton
Anthony Peyton@arpeyton·
A lot of people intentionally abuse this knowing that Microsoft has not been enforcing it. I personally find that unethical - not liking the licensing model doesn’t entitle you to use it without paying. I strongly suspect MS is about to crack down on this, as well as customers “stacking” Business SKUs to exceed the 300 user guideline.
English
0
0
0
544
Bastien Perez
Bastien Perez@bastienperez_·
📣 For years, Microsoft has been fairly permissive with Entra ID P1/P2 feature usage: you could buy a single license and it would effectively “unlock” features for the entire tenant. This creates a lack of visibility to know whether tenants are complying with licensed feature usage limits, such as: * Conditional Access (minimum Entra ID P1) * Risk-based policies (Entra ID P2) Microsoft has updated its page to track license usage and identify “spikes” (overages). 🔺 Where to find it: Entra ID portal > Licenses > License usage (Preview) Direct link: #view/Microsoft_AAD_IAM/LicensesMenuBlade/~/LicenseUtilization" target="_blank" rel="nofollow noopener">entra.microsoft.com/#view/Microsof… The real question: will Microsoft eventually start going after the €€ from tenants that exceed their limits? Wait and see…
Bastien Perez tweet media
English
8
19
101
12K
Tyler Sebree ⚡️
Tyler Sebree ⚡️@TylerSebreezy·
Ohio in the last 5 days: •Hurricane wind storm •Random quiet day •70s and sunny •Severe thunderstorms •Snow •More wind •Wind chills near 0⁰ •Meteor exploding in the sky
Lincoln Village, OH 🇺🇸 English
146
855
6K
180.7K
Anthony Peyton
Anthony Peyton@arpeyton·
Agreed, one someone pops a GA it doesn't seem likely that much is going to save you. In a world where people are: - syncing on-prem accounts, including DAs, to Entra and assigning them admin roles, including GA - assigning GA to normal user accounts with mailboxes - using GA for all admins instead of proper RBAC - not using phishing resistant MFA or PIM for admin roles solutions such as multi-admin approval aren't going to do much.
English
0
0
1
97
EZ
EZ@IAMERICAbooted·
Reduce your Intune Admins and use intune rbac and restricted admin units. Segregate device management into groups to decrease the blast radius. Treat Intune Admins like Global Admins. Require PIM with approvals. I've been saying this since before it was popular. As unpopular as this may sound right now, Microsoft is not to blame. They wrote about how to do all this in their documentation, but nobody does it. You have to keep in mind that it could have been a Global Admin too. In that case, the situation is even more dire. The vast majority of orgs are still hybrid. If the compromise was of the on-prem AD, not much you can do because you can pivot to an Intune Admin's device and use the APIs. This is why your EDR should be throwing high alerts when admin machines stop checking in and you should validate visibility on those machines. Managing admin machines is really really hard. Admins write code, run scripts, and look like they are compromised all the time when they're not.
Bert-Jan 🛡️@BertJanCyber

The Stryker Intune Remote Wipe incidents highlight that detection & response capabilities should extend beyond the attack vectors often published. The destruction of services should be detected if it exceeds a certain threshold within a sliding window. More in 🧵

English
9
38
163
31K
Anthony Peyton รีทวีตแล้ว
向阳乔木
向阳乔木@vista8·
如果你买了罗技的高端鼠标(如MX Master等)。 结果发现要用它的全部功能,必须装一个叫 Logitech Options+ 的SB软件。 这软件要联网,要账号,还会在后台偷偷收集数据。 有个叫 TomBadash 的程序员受够了。 他开发了一个叫 Mouser 的开源工具,用来替代罗技官方程序。 开源地址见评论
向阳乔木 tweet media
中文
178
587
6.1K
477.8K
Anthony Peyton รีทวีตแล้ว
The Lunduke Journal
The Lunduke Journal@LundukeJournal·
The idea behind “Ageless Linux” is simple: Take Debian Linux. Run a script that changes a few words to “ageless”, in some key spots, declaring that the current Operating System (“Ageless Linux”) is knowingly refusing to comply with new Age Verification laws. “Software for humans of indeterminate age. We don't know how old you are. We don't want to know. We are legally required to ask. We won't.” “We are in full, knowing, and intentional noncompliance with the age verification requirements of Cal. Civ. Code § 1798.501(a).” agelesslinux.org
The Lunduke Journal tweet mediaThe Lunduke Journal tweet mediaThe Lunduke Journal tweet mediaThe Lunduke Journal tweet media
English
44
269
2K
67.9K
Anthony Peyton
Anthony Peyton@arpeyton·
@IAMERICAbooted This has always been the right answer, yet I still find AD DAs synced to Entra with GA assigned and a UPN with the vanity domain.
English
1
0
3
135
EZ
EZ@IAMERICAbooted·
Unsolicited reminder: cloud only admin accounts should be in the following format - ericaISawesome@yummytacos.onmicrosoft.com Or fuckTHEhaters@snaffletastic.onmicrosoft.us
English
7
2
42
3.6K
Manel Rodero
Manel Rodero@manelrodero·
@MountainsGuy1 The Windows laptop is a company-issued device. However, if MFA is required during Autopilot, the user would need to add MFA on a mobile device. Since there are no company-issued mobile phones, the user would have to use their personal phone, which is undesirable.
English
4
0
0
284
Manel Rodero
Manel Rodero@manelrodero·
I'm trying to create a CA policy that forces MFA to be used for all resources but does not apply during Autopilot User Driven OOBE. I have defined the CA as the screens show, but it doesn't work, it keeps asking the user for MFA. Has anyone implemented something similar?
Manel Rodero tweet mediaManel Rodero tweet mediaManel Rodero tweet media
English
10
0
26
5.4K
Anthony Peyton
Anthony Peyton@arpeyton·
@techspence For me, it’s about building good habits. If you don’t always lock it, are you always going to remember to do it? Also, sometimes that 3 minutes at the water cooler turns into 2 hours when you get pulled into something “critical” in the hallway.
English
1
0
5
131
spencer
spencer@techspence·
Yes, you should lock your computer when you get up and walk away while at the office. No, you're not gonna get hacked in the 3 minutes that you're gone from your desk getting some water. YMMV
English
130
8
505
33.8K
Anthony Peyton รีทวีตแล้ว
ALI TAJRAN
ALI TAJRAN@alitajran·
Turn off Diagnostics and Feedback on Windows devices! By default, Windows devices send telemetry data to Microsoft. However, not all users or organizations may wish to share this information. To disable diagnostics and feedback, follow the steps below: 1. Open Settings 2. Click Privacy & Security 3. Click Diagnostics & feedback 4. Turn off Send optional diagnostic data 5. Turn off Improve inking and typing 6. Turn off View diagnostic data 7. Delete Diagnostic data 8. Set Feedback frequency to Never For organizations, control this centrally and set it up using Group Policy or Intune. #Microsoft #Windows #Privacy #Telemetry
ALI TAJRAN tweet media
English
2
9
55
4.6K
Anthony Peyton
Anthony Peyton@arpeyton·
I don’t see how this is ever going to work. It’s a fundamentally different piece of software that doesn’t address the core use cases that many user of Outlook “classic” require. Most single-mailbox users could effectively use OWA, and that’s effectively what “New Outlook” is, a webmail wrapper. It also falls apart quickly trying to manage multiple mailboxes, calendars, and other key features that make Outlook “classic” a key AP for IT, Accounting, HR, Marketing, Sales, and Admin Assistants. That’s without even going into the COM add-in debacle, not going to beat that horse to death when others already have. I’m really not sure what MS is thinking here.
English
0
0
6
341
Windows Central
Windows Central@WindowsCentral·
Microsoft hits snooze on the New Outlook migration — again Microsoft is pushing the New Outlook opt‑out deadline all the way to 2027, giving IT admins another year to prep for the switch. The company says the extension is meant to give organizations more time to test features, adjust workflows, and make sure the new client fits their needs before the old Outlook is phased out. It’s a big shift for businesses that weren’t ready for the 2024 or 2025 timelines, and Microsoft is clearly responding to feedback from admins who said the transition needed more breathing room. The New Outlook is still the future, but now the rollout has a little less pressure — and a lot more time for organizations to get their house in order. Full details below👇 windowscentral.com/microsoft/micr…
English
28
23
128
35.2K
Anthony Peyton
Anthony Peyton@arpeyton·
This feels like one of the dumbest hills to die on. If it was delivered as a native app, people would call it bloatware. If you had to download it, they’d complain about the Microsoft Store. I’m not saying that Windows 11 doesn’t have serious problems, it does and that’s indisputable. My point is that launching a speed test in a browser (just like Ookla and Fast have done for years) isn’t something worthy of the outrage.
Windows Latest@WindowsLatest

Microsoft is rolling out an Internet Speed Test tool in Windows 11, but it literally sends you to Bing in your default browser. The taskbar’s “Perform speed test” button doesn’t open any built-in internet speed test tool. You’d expect a multi-trillion-dollar company to build a native feature for something as basic as an internet speed test. But apparently, building a native internet speed test is rocket science, so Windows just sends users to Bing instead (which also helps increase Bing usage!) 🤷

English
0
0
1
55
Anthony Peyton
Anthony Peyton@arpeyton·
Even the basic SKUs have gotten so complicated. Customer: “I want Business Premium.” MS: “Great will that be Business Premium (No Teams) [New Commerce Experience], Microsoft 365 Business Premium and Microsoft 365 Copilot Business [New Commerce Experience], Microsoft 365 Business Premium (No Teams) and Microsoft 365 Copilot Business [New Commerce Experience], or plain old Microsoft 365 Business Premium [New Commerce Experience]?” Customer: “What?” Microsoft: “Would you like to hear about our new 3-year commitment? It’s part of the New Commerce Experience.”
English
0
0
1
39
EZ
EZ@IAMERICAbooted·
@arpeyton @PyroTek3 and there's so much pay as you go now, it's awful
English
1
0
0
26