Security-Research

OID-See v1.1.0: External …

This is a personal blog and all content herein is my own opinion and not that of my employer.


OID-See v1.1.0 is out

v1.0.1 tightened the scoring.

v1.1.0 expands what OID-See can actually see.

This is the biggest release since the initial drop: a new external identity posture surface, a fully …

OID-See v1.0.1: Small …

OID-See v1.0.1 is out 🎉

This is a precision release.

No shiny new dashboards.
No dramatic architectural upheaval.
Just tighter logic, fewer false positives, and a scoring model that better reflects how Entra actually behaves in the real world.

If you’re already using OID-See, this release should …

OID-See: Giving Your …

Hero image generated by ChatGPT

This is a personal blog and all content herein is my own opinion and not that of my employer.


Correction

When I initially done this work and posted this blog, my mental model was that lack of ownership was a bad thing. My failing was in seeing ownership as …

Silent Drip: When Sync …

Hero image generated by ChatGPT

This is a personal blog and all content herein is my own opinion and not that of my employer.


Background

Microsoft Edge introduced Drop as part of its sidebar ecosystem as a quick, frictionless way to share notes and files between signed-in devices using OneDrive …

The Unseen Variable: …

Hero image generated by ChatGPT

This is a personal blog and all content herein is my own opinion and not that of my employer.



The Unseen Variable: Identity, Agentic AI and the Path of Least Resistance

Every few years the industry rediscovers a truth that has always been hiding in plain sight. …

Announcing ISDF – Intune …

Hero image generated by ChatGPT

This is a personal blog. All opinions are my own - not my employer’s.



Earlier this year, I published OuttaTune – a deep dive into how Conditional Access (CA) depends on device-sourced metadata and the risks of trusting values that endpoints themselves can …