TechBrandon Profile Banner
Tech Brandon Profile
Tech Brandon

@TechBrandon

Followers
1K
Following
7K
Media
309
Statuses
3K

Father. Engineer. Learner. Lurker. AD, Entra/Azure & enterprise security specialist. Senior Security Consultant @trustedsec. Fellow Human Being.

Joined August 2011
Don't wanna be here? Send us removal request.
@TechBrandon
Tech Brandon
6 months
Hello friends! I'm doing a quick fundraiser and head shave for my favorite charity @StBaldricks . I'd love if you'd help me reach my goal.
2
3
7
@TechBrandon
Tech Brandon
7 hours
Just updated my CA Policy reporting tool to support JSON files provided by @DanielatOCN. No more Graph permissions requirement. Download all the JSON files, point my script to the folder, and you'll get the same report as you would have via Graph.
Tweet card summary image
github.com
Scripts to enumerate and report on Entra Conditional Access - techBrandon/CAPs
@DanielatOCN
Daniel Bradley
8 days
𝐂𝐀 𝐏𝐨𝐥𝐢𝐜𝐲 𝐂𝐨𝐩𝐢𝐞𝐫 is now on the Chrome Web Store! Check out the instructions and install link here > With CA Policy Copier, you can quickly copy or download individual Conditional Access policies in JSON format, which can serve as a temporary
Tweet media one
0
3
15
@grok
Grok
9 days
Join millions who have switched to Grok.
318
664
5K
@TechBrandon
Tech Brandon
10 hours
Who's heading to @BlueTeamCon ?!?!
0
0
1
@TechBrandon
Tech Brandon
3 days
RT @mzbat: Attending Blue Team Con in Chicago this weekend and need some help with your resume, interview skills, and/or career guidance? R….
0
12
0
@TechBrandon
Tech Brandon
6 days
This is why you need at least 1 policy that applies to all resources. No exceptions.
@merill
Merill Fernando
7 days
Little known fact. Did you know that excluding just one app from an 'All Apps' conditional access policy may let other apps through? . @fabian_bader explains in this week's Entra Chat.
0
0
5
@TechBrandon
Tech Brandon
7 days
I wanna hear more "raw dogging" stories. What you all got?.
@JackRhysider
Jack Rhysider 🏴‍☠️
8 days
@HackingLZ I remember raw dogging the internet back in the day. No router. Just plug right into the modem. Then some one sent me a systemwide message from my computer to my computer "hey, nice computer lol" Then I learned the risks of unprotected internet.
0
0
1
@TechBrandon
Tech Brandon
7 days
RT @DebugPrivilege: I'm hiring a Principal Security Researcher with rock-solid knowledge in Active Directory, Entra ID, and security resear….
ats.rippling.com
Position Overview   Netwrix is seeking a seasoned Principal Security Researcher with deep expertise in Active Directory and Entra ID t...
0
33
0
@TechBrandon
Tech Brandon
8 days
You're not going to want to miss this.
@TrustedSec
TrustedSec
8 days
Many invest in penetration testing but skip a key step in their #ActiveDirectory to significantly reduce the attack surface. Join @PyroTek3.and @paulsems for our next #webinar on September 10 and learn what you're missing. Register now!
Tweet media one
0
1
3
@TechBrandon
Tech Brandon
9 days
It's tattoo day!
0
0
0
@TechBrandon
Tech Brandon
13 days
I don't know why it never occurred to me before. 🤔 "A Grant type policy blocks access, but in a positive way in that it tells the client what it needs to do to get access – become compliant or pass MFA etc. – whereas a Block type policy gives no feedback and just blocks access.".
@merill
Merill Fernando
13 days
One thing I always recommend when it comes to designing conditional acesss policies. Never use a block policy when the same outcome can be achieved with a grant policy. This blog post by Rakhesh is a good walthrough why. 👇.
1
1
12
@TechBrandon
Tech Brandon
13 days
RT @techspence: Let’s make Active Directory security education available to all!. List your favorite Active Directory security resources.….
0
103
0
@TechBrandon
Tech Brandon
16 days
Gosh damnit @JackRhysider . No joke, you just called my mom. Great storytelling, as usual. Wish I was there to hear it in person.
@SAINTCON
SAINTCON
8 months
It’s a holiday miracle!. Keynote presenter Jack Rhysider, of Darknet Diaries, gave an incredible presentation. You showed great respect the conference, and now we’re able to share the full presentation. @JackRhysider⁩ ⁦@DarknetDiaries⁩.
0
0
2
@TechBrandon
Tech Brandon
17 days
My talk, Finding Holes in Conditional Access Policies, from @CypherCon is live. This was such a fun conference to be a part of. Maybe I'll see you there next year.
1
18
77
@TechBrandon
Tech Brandon
20 days
RT @NathanMcNulty: Had a random like on this, guess it's a good reminder especially since some of the passkey rollout content was updated i….
0
10
0
@TechBrandon
Tech Brandon
21 days
This is a well written attack path that Nathan takes to the next level with some really next-level mitigation advice. Guys, this is free gold! 🥇.
@NathanMcNulty
Nathan McNulty
23 days
This is a great read, and it has some good mitigations listed. There are additional recommendations I would offer that I did not see mentioned, so I'll do my best to expound on this without giving away too much (you need to go read the article) :P
Tweet media one
1
6
18
@TechBrandon
Tech Brandon
23 days
Oh Claude, don't make me blush. You're not that kind of AI.
Tweet media one
0
0
3
@TechBrandon
Tech Brandon
24 days
@PyroTek3
Sean Metcalf
25 days
I am back to posting to in my free time (which I have again). I plan on adding new content relating to Active Directory & Azure AD (now Entra ID). First up is "Entra & Azure Managed Access Revisited". This article expands on one I wrote years ago about
Tweet media one
0
0
4
@TechBrandon
Tech Brandon
29 days
RT @the_jvan: Packing up the last few tidbits for tonight's @SoberInCyber #SoberSpeakeasy! Join us at 7 PM at the Mob Museum (pre-registrat….
0
5
0
@TechBrandon
Tech Brandon
1 month
So many out there celebrating another year of MVP status and here I am just happy my developer subscription keeps getting renewed. 😂.
0
0
2
@TechBrandon
Tech Brandon
1 month
Excited to be speaking at @Quest #TEC2025 in Minneapolis, Sep 30–Oct 1. I’ll be presenting alongside top experts in identity, cybersecurity, and M365 data. Checkout the abstracts for both of my talks. Hope to see you there!
Tweet media one
0
0
1
@TechBrandon
Tech Brandon
2 months
I recommend the sleeveless if you're heading to Vegas.
@SoberInCyber
Sober in Cyber
2 months
Whether you're team #SoberSquad or #SupportSquad, get your merch order in soon so your gear arrives before #HackerSummerCamp! . A portion of the proceeds from every order comes back to #SoberInCyber as a donation. Place your order at
Tweet media one
0
0
1