Security

“XSS and CirriusTech? Oh …

Cover Photo by ChatGPT

Introduction

In this post, I’m going to talk about a recent experience having a vulnerability in this website reported to me, the whole experience and how I dealt with it.

What Happened?

On 29th January 2025 @ 12:07, I received an email into my admin mailbox for my …

Copilot Studio Chatbots …

Images in this post generated by Microsoft Copilot

This is a personal blog and all content therein is my personal opinion and not that of my employer.

Introduction

In this post, I’m going to talk about an issue I spotted recently in Power Platform and by extension Copilot Studio.

The Issue …

ALL your bitlocker keys …

Cover Photo by Kafka Anokhina on Unsplash

This is a personal blog and all content therein is my personal opinion and not that of my employer.

Introduction

In this post, I’m going to talk about an issue I spotted recently, to make you aware of an overly privileged built-in role in Microsoft …

GitHub OAuth 3rd Party …

Cover Photo generated with AI - 19th November 2023 at 17:59 UTC by DALL-E 3 via Bing Chat

Introduction

In this post, I’m going to talk about a problem I recently experienced with permissions in GitHub, how I worked around them and what you need to know about OAuth permissions in GitHub.

What …

Google Cloud Certified: …

Introduction

I recently managed to pass the Google Cloud Certified: Professional Cloud Security Engineer exam.

In my last post, I talked about the learning journey - this post will cover what I did to prep for the exam after completing those courses and my experience of the exam itself.

Preparation …

What are shadow admins in …

Cover Photo by David East on Unsplash

Introduction

In this post, I’m going to talk about a concept you may have heard of (shadow admins), what they are, why they are a problem you need to care about, and what to do about them.

What is a shadow admin?

The name should be fairly self …