CIAOPS: The insecurity of shared mailboxes

https://blog.ciaops.com/2019/04/27/the-insecurity-of-shared-mailboxes/ Shared mailboxes are a really handy component of Microsoft 365 in that they allow multiple users to access a single mailbox. This works really well for generic accounts like info@, accounts@, etc. However, there are some security issues with these that I don’t think many people are aware of. The first point to note is that shared mailboxes in Microsoft 365 actually have a login and password. Thus, they can be accessed direc…

Read More

Disable Excel macros in O365

> Simple fix: use https://t.co/YWCaktFxpz to disable Excel 4.0 macros. The very next time all your users launch O365 ProPlus, they will download the block policy. https://t.co/Bc34FJJSjX — Joe Stocker (@ITguySoCal) July 3, 2020 [https://twitter.com/ITguySoCal/status/1279178772361605120?ref_src=twsrc%5Etfw]…

Read More

Protecting your Teams with Azure Sentinel

> If your organization is increasing your usage of @MicrosoftTeams [https://twitter.com/MicrosoftTeams?ref_src=twsrc%5Etfw] and you want to monitor for suspicious activity then read this blog on collecting Teams data with #AzureSentinel [https://twitter.com/hashtag/AzureSentinel?src=hash&ref_src=twsrc%5Etfw] and how to hunt in that data: https://t.co/CdmqejB3Ff — Pete Bryan (@MSSPete) March 30, 2020 [https://twitter.com/MSSPete/status/1244737461109936128?ref_src=twsrc%5Etfw] MS link here; Pro…

Read More