Learn AI, Data Science & Business — Earn Certificates That Get You Hired
Learn the Skills Netflix, Meta, and Capital One Actually Hire For
Overview
Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This course examines how targeted threat actors gain access to Microsoft Office 365 tenants, maintain persistence, and steal data across Exchange Online, Teams, SharePoint, OneDrive, and related services. It covers authentication models, conditional access, Azure Active Directory, OAuth and Graph API abuse, forwarding rules, and detection considerations.
Syllabus
Intro
Meet Josh
Agenda
Authentication
Authentication Types
Unified Log
Attack Lifecycle
Case Studies
First Case Study
Second Case Study
How can we stop this
Persistence
Conditional Access
Sophistication
Azure Active Directory
GoldSaml
Mail Forwarding Rules
Rights Delegation
Mail Flow Transport Rules
Graph API
EDiscovery Abuse
Closing Thoughts
Questions
Taught by
Black Hat