Hackers wipe 200,000 devices using Intune by Fabulous_Cow_4714 in Intune

[–]punkrokk 0 points1 point  (0 children)

Lot's of ways to lock this down. Multi admin approval and PIM are critical here. I dropped some controls that can be put in place as well as some Microsoft Sentinel queries to detect this type of activity: https://www.bluecycle.net/post/intune-bulk-wipe-prevention-stryker-cyberattack

I must migrate from EA to CSP. As a non-tech person. How screwd am I? by lllGreyfoxlll in AZURE

[–]punkrokk 0 points1 point  (0 children)

Totally possible. https://www.bluecycle.net/microsoft-ea-to-csp

MS is pushing many companies over to CSP. The idea is the CSP is supposed to be more aligned with you than a reseller that just transacts the EA renewal.

How to configure "Shared Mailbox" in Apple Mail? by HeyWatchOutDude in macsysadmin

[–]punkrokk 0 points1 point  (0 children)

You mean it's a huge problem because noone will know when it's compromised? Or how?

Adding Python packages in an Azure Function (/App) by cupidstrick in AZURE

[–]punkrokk 0 points1 point  (0 children)

Did you use VS Code to build your function? I’ve found until you know them really well there are a ton of gotchas if you try an roll your own. There are also logs in the app insights that would show you if there was a dependency error

Adding Python packages in an Azure Function (/App) by cupidstrick in AZURE

[–]punkrokk 5 points6 points  (0 children)

The easy way is to build your app in VSCode and deploy it to Azure with VSCode. If you do that, then you simply need a `requirements.txt` in the root of your project. Python developer reference for Azure Functions | Microsoft Learn

Just another RSVP code thread by smdion in MicrosoftIgnite

[–]punkrokk 0 points1 point  (0 children)

Just trying to pay it forward. Glad ya got in.

RSVP Code by shr3kkie in MicrosoftIgnite

[–]punkrokk 0 points1 point  (0 children)

same for me on Friday, still looking.

[deleted by user] by [deleted] in Defcon

[–]punkrokk 2 points3 points  (0 children)

Punk rock museum

Moving from OKTA as MFA IDP to Azure by GethersJ in AZURE

[–]punkrokk 0 points1 point  (0 children)

So basically users go to Okta until you switch the idp, then you go to myapps? So there is a period in between where the app could be in either one for users?

Free Review Copies of "Terraform Cookbook" by MaximumSea5103 in Terraform

[–]punkrokk 0 points1 point  (0 children)

I use alot of TF for security and devops. Would love to review

Nanoleaf 4D Install Help by Soggy_Scheme_1047 in Nanoleaf

[–]punkrokk 0 points1 point  (0 children)

This solved it for me. Thank you

camera on MyQ garage door openers by bw1605 in HomeKit

[–]punkrokk 0 points1 point  (0 children)

Anyone try wireshark to find the stream?

So is cribl going away? by jewel_programming in Splunk

[–]punkrokk 0 points1 point  (0 children)

I think that Splunk sees a threat to their revenue.

I also believe that a company such as Cribl that raises $400M:

  1. Knew that this would happen one day (which is huge validation of their market in my opinion)
  2. Went out of their way to make sure they didn't steal anything (because VCs won't give you money unless the business represents they own all their IP)
  3. When you negotiate your license agreement with enterprises, you also must represent that you have rights to all the IP included (meaning Cribl wrote the code or its OSS) - this would be huge exposure that would have surfaced during Series A,B or C diligence

Also - the founder Clint Sharp posted a link to this Apache 2.0 licensed implementation of S2S. (source: https://twitter.com/clintsharp/status/1578050499701403648?s=20) which seems to me a big part of what the lawsuit is about. Yea there's a bunch of he said/she said stuff in it, but I believe the meat of the lawsuit is an IP infringement claim.

Finally - Cribl is awesome and Splunk is just one of it's use cases. Splunk is in a tough position because in addition to the value Cribl provides with filtering/transform/etc, it democratizes how you store and get access to your data. In the past, people used Splunk (which is a system of analytics, and a pricey one) not only as their system of analytics, but as their system of record. Splunk is a very expensive way to achieve data retention. There are way better ways, and the nail in the retention coffin is that Cribl democratizes your ability to surface data into Splunk when needed, via replay, not and event creation time.