202303s

Jabra Direct Update (March 2023)

Andres Bohren
Hi All, Yesterday i’ve got again a Message that a new Version is available for Jabra Direct. Release Notes Regards Andres Bohren

Microsoft Outlook Elevation of Privilege Vulnerability (CVE-2023-23397)

Andres Bohren
Hi All, There is a Outlook Escalation of Privilege Vulnerability in Outlook. Tony Redmond has explained that very well Outlook Elevation of Privilege Vulnerability Leaks Credentials via NTLM Microsoft Outlook Elevation of Privilege Vulnerability Exchange CSS has released a Script to test and mitigate CVE-2023-23397 script Exchange On Prem You need to have an RBAC Admin Role that allows Application Impersonation and assign an Account. If you don’t have that Role you can create it

March 2023 Exchange Server Security Updates

Andres Bohren
Hi All, Today the March 2023 Exchange Server Security Updates have been released. Released: March 2023 Exchange Server Security Updates Description of the security update for Microsoft Exchange Server 2019, 2016, and 2013: March 14, 2023 (KB5024296) Security Update For Exchange Server 2016 CU23 SU7 (KB5024296) The downloaded exe File extracts then starts the Installation in a elevated Promt After the Security Update is installed, it is a good idea to restart the Server.

New AzureAD Logs (but only you where included in Preview)

Andres Bohren
Hi All, A few days ago, i was very enthusiastic, because i found some new Logs in Azure Active Directory Diagnostic Settings EnrichedOffice365AuditLogs MicrosoftGraphActivityLogs I’ve enabled all those logs But i could not see any new Tables in the Log Analytics Workspace So i googled around and found out, that you can enable those logs, but the Tables are not created unless you where in the Preview :( Integrate Azure AD logs with Azure Monitor logs Regards

Enable Two Factor Authentication on GitHub

Andres Bohren
Hi All, GitHub recently announced that they will make Two Factor Authentication (2FA) mandatory. Raising the bar for software security: GitHub 2FA begins March 13 Let’s enable that straight away. I’ve logged into my Github Account. Under “Password and Authnentication” you can enable Multifactor Authentication. In my Case GitHub Mobile was used to verify my Access The Website showed a code i had to Enter in the GitHub Mobile App

M365 Groups dumped in Outlook for Windows?

Andres Bohren
Hi All, Yesterday i stumbled across something odd. Did not see the M365 Groups in Outlook for Windows anymore. They seem to be gone in the newest Version. Let’s start at the beginning. Office in the Current Channel Outlook Profile is set up with Cached Mode (without Chached Mode you don’t see the M365 Groups either). As you can see the Groups are listed here The cached Files are stored in C:\Users<Username>\AppData\Local\Microsoft\Outlook

Azure PowerShell Module Az 9.5.0 released

Andres Bohren
Hi All, Just a few Hours ago, a new Version of the AZ PowerShell Module has been released to PowerShell Gallery. Az 9.5.0 Release Notes Show Installed AZ Module and what’s available in the PowerShell Gallery Get-InstalledModule AZ Find-Module AZ #Run Script directly from GitHub $ScriptFromGitHub = Invoke-WebRequest "https://raw.githubusercontent.com/BohrenAn/GitHub\_PowerShellScripts/main/Azure/Cleanup-AZModules.ps1" Invoke-Expression $($ScriptFromGitHub.Content) The AZ Module is just a Wrapper Module for all AZ.* Modules Get-InstalledModule AZ* Regards Andres Bohren

M365 Defender for Office 365 User reported Settings

Andres Bohren
Hi All, Do you know the User reported Settings in Microsoft 365 Defender for Office 365? For instance, you can send the Mails that a user reports with the “Report Message” Add-In to Microsoft also to a reporting Mailbox that you own. User reported settings User Reported Settings https://security.microsoft.com/securitysettings/userSubmission I’ve enabled that a while ago. As you can see the Reporting Mailbox receives all types: Junk Phishing Not Junk The Mail contains the Header and the Original Mail as Attachment.

monitor-website-with-azure

Andres Bohren
Hi All, I wanted to monitor the Performance of my Blog. I’ve added Application Insights to my Azure Subscription and under “Availablility” i have added a “Classic test”. MS Learn Monitor availability with URL ping tests URL ping test: Add the URL, the Regions where you want to test from, the Response Code and Timeout. In my case i don’t need an Alert. After a few days you can se now the Availability is at 100%

Microsoft.Graph PowerShell Module 1.23.0 released

Andres Bohren
Hi All, Somehow i missed, that already yesterday Microsoft has released a new Version of Microsoft.Graph PowerShell Modules to the PowerShell Gallery. Microsoft.Graph 1.23.0 Release Notes (Not yet listed there) Let’s check the installed Version and what’s available on the PowerShell Gallery Get-InstalledModule Microsoft.Graph Find-Module Microsoft.Graph To install the newest Version of the PowerShell Modules and also uninstalling the old Versions, you can use my GitHub Script. It takes a while until all Modules are installed.