Account Takeover Fraud , Fraud Management & Cybercrime , Governance & Risk Management
OnDemand | Identity Crisis: Combating Microsoft 365 Account Takeovers at Scale
In the cloud, proof of identity is all that you need to access private resources - even if that proof is stolen.
Welcome to the identity crisis!
In the case of Microsoft 365, the attack surface is about 345 million identities and counting, making it a tantalizing target for cybercriminals who want to cash in on the relative simplicity of these attacks.
Let’s step into the attack lab to learn:
- How we can cut off attackers during one of the most critical phases of their attacks: initial access.
- The high-level landscape of attacks and how they differ from their on-premise analogs.
- How to identity attacks compared to their predecessors.
- The specifics of some of the most common and dangerous identity attacks that result in account takeover.
- The detections and mitigations for the attack, paying special attention to the best telemetry sources that allow effective threat hunting against the attack.