Mimikatz: https://dirkjanm.io/digging-further-into-the-primary-refresh-token/Ignite 2020: https://www.microsoft.com/en-us/igniteBecome a KQL Ninja: https://security-tzu.com/2020/08/07/become-a-kql-ninja/Teams: https://techcommunity.microsoft.com/t5/microsoft-teams-blog/what-s-new-in-microsoft-teams-july-2020/ba-p/1551561SCC Report: https://github.com/jangeisbauer/SCCReportBooking "14 people are currently watching this product" --> random()*12 + 3: https://twitter.com/RoninDey/status/1292002070363541505?s=20MCAS spoofing: https://stephanwaelde.com/2020/08/04/mitigate-mcas-issue-with-user-agent-spoofing/Überall tauchen DUOs auf: https://twitter.com/matvelloso/status/1291576776238305281?s=20Mover.io (2019 gekauft)"Alternativen" SharePoint Migration Tool, ShareGate, AvePoint, …Viele Anbindungen (14): S3, AZ Blob, Box, Dropbox, G Suite, Gdrive, O365, OneDriveOneDrive 2 OneDriveDropBox 2 OneDriveOneDrive 2 DropBoxImmer noch die Rede von User!User Mapping = Site Mapping = Url 2 UrlPermission Mapping (upn = upn) - damit auch B2B machbar?Anmelden an Service 1Anmelden an Service 2Auf jeder Seite den Ordner wählenIm Ziel auch anlegbar2 AAD Apps (alles OIDC/Oauth)Anmeldung an zwei Tenants in derselben Browser SessionMover OneDrive (user consent)Office 365 Mover (admin consent)Keine "Lizenz"Performance: Mein OneDrive 45k 106 GB = 12 stundenBlob to SharePoint über ein Schedulehttps://www.youtube.com/watch?v=vuo8kD5zF5IBUT YOU ARE NOT ALLOWED TO: Microsoft Endpoint Data Loss Prevention
Public PreviewNative built into Windows (in MDATP component and edge)Sensitive Info Type: ex german passport numberAND Share Condition: Is shared with somebody inside or outside my orgAudit or restrict activities on windows devices
Upload to cloudservices or access by unallowed browsersCopy to clipboardCopy to USBCopy to network shareAccess by unallowed appsPrinthttps://techcommunity.microsoft.com/t5/microsoft-security-and/announcing-public-preview-of-microsoft-endpoint-data-loss/ba-p/1534085