https://blog.ciaops.com/2019/04/27/the-insecurity-of-shared-mailboxes/ Shared mailboxes are a really handy component of Microsoft 365 in that they allow multiple users to access a single mailbox. This works really well for generic accounts like info@, accounts@, etc. However, there are some security issues with these that I don’t think many people are aware of. The first point to note is that shared mailboxes in Microsoft 365 actually have a login and password. Thus, they can be accessed direc…
All posts in Office365
> Office 365 Won’t Block Old Clients But End in Sight for Office 2013 [https://office365itpros.com/2020/07/17/end-sight-office-2013/]…
> (Thread)Hey all Lets talk about consent phishing with Office365 products https://t.co/WfPg0VexQj — Root (@rootsecdev) July 11, 2020 [https://twitter.com/rootsecdev/status/1281930341050191873?ref_src=twsrc%5Etfw]…
> Simple fix: use https://t.co/YWCaktFxpz to disable Excel 4.0 macros. The very next time all your users launch O365 ProPlus, they will download the block policy. https://t.co/Bc34FJJSjX — Joe Stocker (@ITguySoCal) July 3, 2020 [https://twitter.com/ITguySoCal/status/1279178772361605120?ref_src=twsrc%5Etfw]…
> If your organization is increasing your usage of @MicrosoftTeams [https://twitter.com/MicrosoftTeams?ref_src=twsrc%5Etfw] and you want to monitor for suspicious activity then read this blog on collecting Teams data with #AzureSentinel [https://twitter.com/hashtag/AzureSentinel?src=hash&ref_src=twsrc%5Etfw] and how to hunt in that data: https://t.co/CdmqejB3Ff — Pete Bryan (@MSSPete) March 30, 2020 [https://twitter.com/MSSPete/status/1244737461109936128?ref_src=twsrc%5Etfw] MS link here; Pro…