Six Considerations Identity Admins Should Be Aware of Around Scripting
March 12, 2024 •Sander Berkouwer
*NOTE: This article was originally published on Thursday, 2/29/24. After receiving feedback from the MVP Community, we decided to unpublish on...
Read MoreEntra ID Application Consent: What Identity Admins Need to Know - Part 1
March 6, 2024 •Matthew Levy
If you are an administrator of a Microsoft Entra ID tenant, you may have encountered the concept of app consent. App consent is the process of a user...
Read MoreUnlocking Efficiency and Security: Making the Case for Cloud Tenant Access Permissions to the CISO
February 15, 2024 •John O’Neill Sr
Organizations increasingly rely on cloud applications to drive operational efficiency and innovation in today's digital economy. However, the...
Read MoreInsecure App Registrations Breached Microsoft
January 30, 2024 •Thijs Lecomte
On the 17th of January, Microsoft published a very short and vague article on how a Russian Threat Actor, Midnight Blizzard, was able to access...
Read MoreIdentifying OAuth Apps Without Role Assignments in Your Microsoft Tenant
January 25, 2024 •Matthew Levy
Why it’s important for Identity admins to pinpoint, manage, and secure Entra ID applications without role assignments to ensure proper Application...
Read MoreEntra ID Application Security - Did You Know?
January 18, 2024 •Alistair Pugin
Leading up to the webinar I will be co-hosting on Wed, Jan 31st which is focused on security vulnerabilities within Microsoft Entra ID, I thought I’d...
Read MorePublic Client Flows: What You Need to Know
January 17, 2024 •Alistair Pugin
Public Client Flows. It’s an odd feature that exists in Microsoft Entra ID’s App registration portal. Its purpose is to ensure that certain...
Read MorePrivilege Escalation Using Entra ID Applications
January 11, 2024 •Thijs Lecomte
App Registrations and Enterprise Applications are an integral part of Entra ID as they are at the core of the authentication process. However, they...
Read MoreAfter Attackers Force Their Way in - They Stay in Through Malicious Entra ID Apps
December 13, 2023 •Sander Berkouwer
Before Multi-Factor Authentication (MFA) existed, user credentials were cracked, stolen, intercepted, eavesdropped upon or phished. Valid user...
Read More