Skip to content

Marco Nasta' Blog

Coded thoughts and verses in bits

  • home
  • browse
  • thoughts
  • about me

Tag: Identity Manageent

Lateral Movement in Azure AD: What Still Works in 2025

Despite improvements in Microsoft cloud security, lateral movement in hybrid Azure AD environments is still viable in 2025 — and often undetected.

Marco Nasta Microsoft 365, Microsoft Entra ID, Security, Vulnerabities July 3, 2025July 3, 2025

Shadow Admins in Active Directory: The Privilege You Don’t See (Until It’s Too Late)

Shadow Admins are the privilege paths you’re not watching. These accounts don’t belong to Domain Admins, but they can take over your environment anyway — thanks to ACL misconfigurations, GPO access, or SIDHistory abuse. If you're only auditing group membership, you're already exposed.

Marco Nasta Authentication, Security, Security Remediation, Vulnerabities June 25, 2025June 25, 2025

..abbiamo tutti come tre corde d’orologio in testa.
La seria, la civile, la pazza.
Sopra tutto, dovendo vivere in societa’, ci serve la civile; per cui sta qua, in mezzo alla fronte. Ci mangeremmo tutti … l’un l’altro, come tanti cani arrabbiati…
…Ma puo’ venire il momento che le acque s’intorbidano.
E allora… allora io cerco, prima, di girare qua la corda seria, per chiarire, rimettere le cose a posto, dare le mie ragioni, dire quattro e quattr’otto, senza tante storie, quello che devo.
Che se poi non mi riesce in nessun modo, sferro la corda pazza, perdo la vista degli occhi e non so piu’ quello che faccio!

Il berretto a sonagli (L. Pirandello)
  • Security
  • Authentication
  • Microsoft 365
  • Powershell
A WordPress.com Website.
  • Subscribe Subscribed
    • Marco Nasta' Blog
    • Already have a WordPress.com account? Log in now.
    • Marco Nasta' Blog
    • Subscribe Subscribed
    • Sign up
    • Log in
    • Report this content
    • View site in Reader
    • Manage subscriptions
    • Collapse this bar
Privacy & Cookies: This site uses cookies. By continuing to use this website, you agree to their use.
To find out more, including how to control cookies, see here: Cookie Policy