msandbu

Deployment of Kubernetes, Helm and YAML files using Terraform

One of the great things with Terraform is the wealth of support for different providers and platforms. For instance, you have support for the major cloud providers, SaaS services like Cloudflare, and virtualization layers such as VMware. So, when I’m setting up a Kubernetes environment on a cloud provider such as with Azure, I can …

Deployment of Kubernetes, Helm and YAML files using Terraform Read More »

Phishing attacks in Microsoft Teams and external federation

A while back a customer of ours got targeted with a phishing attack that came through Microsoft Teams. What happened was that the attackers created a new O365 organization and named the users in their tenant like the people working in the IT department in the customer organization. By default, Microsoft Teams has a federation …

Phishing attacks in Microsoft Teams and external federation Read More »

Securing Virtual Machine Infrastructure in Microsoft Azure

This is a summary blog post on a presentation that I hosted on the Microsoft Security User Group Norway a few weeks back (You can view the presentation here –> community/MSUGC-securing-virtual-machines-english.pptx at main · msandbu/community (github.com)) There are many security features within Microsoft Azure when it comes to securing virtual infrastructure. 1: Encrypting data and VM …

Securing Virtual Machine Infrastructure in Microsoft Azure Read More »

Azure Virtual Desktop and ShortPath for Public Networks

A couple of weeks ago, Microsoft introduced a new preview feature for AVD called ShortPath for Public Networks. This allows us to get UDP-based connections to our AVD machines instead of the traditional Reverse TCP-based connections. NOTE: This feature is still in preview This of course improves our end-user experience since we can push more content without needing to …

Azure Virtual Desktop and ShortPath for Public Networks Read More »

IPv6 Support in Microsoft Azure

With more governmental requirements enforcing requirements that public-facing services need to support IPv6 a lot of customers that have started their cloud journey might be having some issues with adopting IPv6 on all their services. Especially with Microsoft Azure, not all services support IPv6 natively, therefore, I wanted to write this post to give an …

IPv6 Support in Microsoft Azure Read More »

Samsung hacked by Lapsus

Last week, a hacker group called LAPSUS had able to gain access to NVIDIA and was able to collect a large amount of data from the internal fileservers, including code signing certificates. Now this week they also claim that they have hacked Samsung, and are providing a lot of claims/proof on what kind of data …

Samsung hacked by Lapsus Read More »

New Book Project: Windows Ransomware Protection and Detection

10 years ago, I wrote my first book together with Packt Publishing, today I’m happy to announce that I’m started working on a new book project together with them. The title will be “Windows Ransomware Protection and Detection“, the content of the book will be focused on: * What is ransomware? giving real-life examples of …

New Book Project: Windows Ransomware Protection and Detection Read More »

Scroll to Top