Menu
Sign In Search Podcasts Charts People & Topics Add Podcast API Pricing
Podcast Image

#AuditTuesday GRC Podcast

The Microsoft Email Hack - Service/User Accounts Used for OAUTH SSO w/ Greg Kutzbach

01 Mar 2024

Description

Who: Greg Kutzbach, Digital Forensic Expert, Exhibit A Cyber            Garret Grajek, CEH, CISSP, CEO of YouAttestMicrosoft just suffered a major attack on their internal email systems.  The culprits were deemed to be Russian state actors.It appears the attackers overtook “legacy”  accounts and created malicious OAUTH access. Cyber forensic expert Greg Kutzbach, an expert on digital discovery, will spell out the hack, and more importantly, how organizations can defend themselves.The start of the solution to this problem is review of the permissions - especially the permissions on service accounts.   YouAttest will show how enterprises can both review their current accounts and be triggered on changes in permission on service and other key accounts.Need to automate your identity audits?  Contact us at YouAttest - we will show you how -  https://youattest.com/contact/

Audio
Featured in this Episode

No persons identified in this episode.

Transcription

This episode hasn't been transcribed yet

Help us prioritize this episode for transcription by upvoting it.

0 upvotes
🗳️ Sign in to Upvote

Popular episodes get transcribed faster

Comments

There are no comments yet.

Please log in to write the first comment.