Artwork

Content provided by Threatscape. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Threatscape or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Inside Microsoft GHOST with Matt Zorich – Exploring Threat Hunting

38:05
 
Share
 

Manage episode 439361609 series 3569217
Content provided by Threatscape. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Threatscape or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Send us a text

In this episode of ThreatCast , Ru and Matt dive deep into the world of Microsoft GHOST, a specialised team focused on cybersecurity hunting within Microsoft. Matt explains the role of the DoD (Detection and Response Team), their work on incident response for customers dealing with ransomware and nation-state attacks, and how Microsoft telemetry plays a crucial role in detecting and mitigating threats.
They also discuss current trends in the cybersecurity landscape, including token theft, adversary-in-the-middle attacks, and the importance of mandatory MFA (Multi-Factor Authentication) for securing Azure and Intune admin portals. Matt shares his insights on how these measures, along with KQL, are helping Microsoft and its customers stay ahead of evolving threats.

ThreatCast podcast is produced by Threatscape.
Our mission is to provide a secure and certain future for our clients. Keeping them protected so that they can go about their business is how we know we’re delivering on our promise.
Contact us

Email Address : info@threatscape.com

Thanks for listening & keep podcasting!

  continue reading

12 episodes

Artwork
iconShare
 
Manage episode 439361609 series 3569217
Content provided by Threatscape. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Threatscape or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Send us a text

In this episode of ThreatCast , Ru and Matt dive deep into the world of Microsoft GHOST, a specialised team focused on cybersecurity hunting within Microsoft. Matt explains the role of the DoD (Detection and Response Team), their work on incident response for customers dealing with ransomware and nation-state attacks, and how Microsoft telemetry plays a crucial role in detecting and mitigating threats.
They also discuss current trends in the cybersecurity landscape, including token theft, adversary-in-the-middle attacks, and the importance of mandatory MFA (Multi-Factor Authentication) for securing Azure and Intune admin portals. Matt shares his insights on how these measures, along with KQL, are helping Microsoft and its customers stay ahead of evolving threats.

ThreatCast podcast is produced by Threatscape.
Our mission is to provide a secure and certain future for our clients. Keeping them protected so that they can go about their business is how we know we’re delivering on our promise.
Contact us

Email Address : info@threatscape.com

Thanks for listening & keep podcasting!

  continue reading

12 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide