Compromised Email HOW?

This page summarizes the projects mentioned and recommended in the original post on /r/Office365

InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
  • hawk

    Powershell Based tool for gathering information related to O365 intrusions and potential Breaches (by T0pCyber)

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • CrpUsernameStuffing

    PS Script to stuff usernames into NPS Connection Request Policies

  • Additionally, even if the system supports it, OTP methods presently break the ability to return vendor-specific attributes from the matching NPS policy (so your VPN server can't receive information based on AD groups, for example). This makes in-band MFA less viable even where the client supports it. However, Microsoft released a ridiculous workaround instead of fixing it: put the group based attributes in connection request policies instead of network policies - these work, but CRPs can't be based on groups, so they linked to some script on GitHub that you can make a scheduled task, that stuffs every username from a group into a CRP: https://github.com/OneMoreNate/CrpUsernameStuffing Basically, they have made little effort to enable the NPS MFA extensions to work with in-band methods in a sane and viable way.

NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts

  • Hawk Repo

    1 project | /r/EmailCompromise | 21 Oct 2023
  • Message Trace O365

    1 project | /r/AskNetsec | 5 Aug 2023
  • Office 365 Outlook rules automatically generating

    1 project | /r/msp | 13 Mar 2023
  • Useful Email Compromise resource

    2 projects | /r/msp | 23 Feb 2023
  • Crazy Email Hacking

    1 project | /r/sysadmin | 23 Jun 2022