< ciso
brief />
Tag Banner

All news with #conditional access tag

6 articles

Amazon Connect Customer adds tag-based access control

🔐 Amazon Connect Customer now supports tag-based access control for custom metrics, enabling administrators to govern who can view, create, or modify each metric. This lets teams tag metrics and assign permissions so they retain full control over their own metrics, have view-only access to other teams’ metrics, or are prevented from seeing restricted metrics. Search results respect these access controls. The feature is available in all Regions where Amazon Connect Customer is offered.
read more →

Google Cloud introduces granular session controls

🔐 Google Cloud has rolled out a 16-hour default session length and expanded session management into a granular, Context-Aware Access (CAA) feature. Administrators can now configure session controls via Terraform, gcloud, and REST APIs for DevSecOps workflows. Policies can target Google Groups and specific applications like the Cloud Console, gcloud, and OAuth apps, and policy management is being integrated into the Google Cloud Console preview. These updates aim to reduce credential theft and account takeover risk while preserving developer productivity.
read more →

Help‑desk vishing fuels Microsoft 365 token theft

📣 Threat hunters warn of a broad data theft and extortion campaign targeting Microsoft 365 and other SaaS platforms via help‑desk vishing, adversary‑in‑the‑middle token theft, and residential‑proxy sign‑ins. Tracked by Arctic Wolf as PREY‑0058 and linked to activity groups like UNC6671 and Cinder, the actors impersonate IT staff to lure executives to authentication‑themed pages and capture MFA approvals. Attacks culminate in SharePoint, OneDrive, Exchange, and Box data exfiltration and extortion without deploying endpoint malware. Organizations are urged to adopt Conditional Access, phishing‑resistant MFA, and tighter SharePoint access controls.
read more →

How attackers bypass multifactor authentication risks

🔒 This article examines prevalent methods attackers use to bypass multifactor authentication (MFA), from MFA fatigue and social engineering to cookie theft and targeting weak or non‑MFA accounts. It summarizes survey findings on uneven MFA adoption, highlights real-world incidents (Okta, Uber), and notes industry guidance favoring phishing‑resistant and passwordless approaches. The piece concludes with concrete defensive steps such as adaptive authentication, tightening access rights, and reviewing password reset workflows.
read more →

Identity Security: The New Pressure Point in Cyberattacks

🔐 Microsoft argues that identity is the primary pressure point for modern cyberattacks as organizations manage proliferating human, non-human, and agentic identities across disparate systems. The post highlights that fragmentation—duplicative solutions and too many vendors—creates visibility gaps that enable lateral movement. It outlines a unified model built on Microsoft Entra, a real-time identity control plane including Conditional Access, and integrated threat protection, and describes AI-driven triage with Security Copilot to accelerate response and reduce analyst fatigue.
read more →

Behavioral Analytics for Defending Against AI Attacks

🛡️ AI-enabled cyber attacks increasingly mimic legitimate users, rendering signature- and rule-based defenses insufficient. Modern identity security must adopt continuous, context-aware risk modeling that evaluates identity, device and session context in real time to detect subtle deviations. Organizations should extend monitoring across cloud, endpoints and privileged accounts, enforce Just-in-Time (JIT) access and consolidate behavioral analytics with session monitoring and granular controls to limit credential abuse and insider misuse.
read more →