Pablo Gallegos (@pggallegos) 's Twitter Profile
Pablo Gallegos

@pggallegos

Cyber Security Architect at Patriot Consulting, M365 Security, Microsoft Enterprise Mobility + Security

ID: 19467071

calendar_today24-01-2009 22:36:41

972 Tweet

260 Followers

1,1K Following

Patriot Consulting Technology Group (@patriotexperts) 's Twitter Profile Photo

Patriot's own Nathan McNulty will be taking on Passkeys in next week's webinar, where he will guide you through the ins and outs of a successful deployment. When: March 25th, 1pm EST/10am PST Register here:bit.ly/4iiLvDu

Patriot's own <a href="/NathanMcNulty/">Nathan McNulty</a> will be taking on Passkeys in next week's webinar, where he will guide you through the ins and outs of a successful deployment. 
When: March 25th, 1pm EST/10am PST
Register here:bit.ly/4iiLvDu
Merill Fernando (@merill) 's Twitter Profile Photo

Folks, the latest episode of Entra.Chat podcast is out! Featuring our very own and beloved Nathan McNulty Subscribe in your favorite podcast player today 👇 entra.news/p/operational-…

Folks, the latest episode of Entra.Chat podcast is out!

Featuring our very own and beloved <a href="/NathanMcNulty/">Nathan McNulty</a> 

Subscribe in your favorite podcast player today 👇
entra.news/p/operational-…
Merill Fernando (@merill) 's Twitter Profile Photo

Nathan walks through the migration steps from legacy to the new #Entra auth methods Folks, the deadline for migrating fast approaching (Sep 2025)! Have you migrated your tenant yet? Watch the full episode at entra.chat

Learn Prompting (@learnprompting) 's Twitter Profile Photo

Microsoft just dropped 11 new AI security agents. Built into Security Copilot, these tools automate tasks across phishing, policy, and compliance. Here's a breakdown of every new agent and what it does: 🔵 Microsoft-developed agents: 1. Phishing Triage Agent (Defender) Sorts

Microsoft just dropped 11 new AI security agents.

Built into Security Copilot, these tools automate tasks across phishing, policy, and compliance.

Here's a breakdown of every new agent and what it does:

🔵 <a href="/Microsoft/">Microsoft</a>-developed agents:

1. Phishing Triage Agent (Defender)
Sorts
Aaron Dinnage (@aarondinnage) 's Twitter Profile Photo

⭐ m365maps.com April 2025 update ⭐ Added M365 Copilot Chat, a glossary and a knowledge base page, some architecture diagrams, and removed Viva Topics. Check the Change Log for details and reach out with any feedback, issues, or suggestions 👍 #m365maps #Microsoft365

Nathan McNulty (@nathanmcnulty) 's Twitter Profile Photo

I've been mulling over this concept of a break glass application in Entra, and thought I'd share some important notes for anyone that might be considering it For reference, here's the article: blog.admindroid.com/how-to-set-up-… Short thread, but my primary concern is privilege escalation

Ryan Hart 🚀 (@thisdudelikesai) 's Twitter Profile Photo

🚨 BREAKING: Microsoft just released a free AI agent training for beginners. You’ve got a phone? That’s all you need. Here’s how to enroll right now (free) ↓

Bert-Jan 🛡️ (@bertjancyber) 's Twitter Profile Photo

Microsoft announced the public preview of the OAuthAppInfo table in the Advanced Hunting schema. I created multiple #KQL queries to help you kick-start the usage of this table.🚀 The queries help you to identify high-permissive, unused and external apps. github.com/Bert-JanP/Hunt…

CyberKnow (@cyberknow20) 's Twitter Profile Photo

Hacktivist group Azzasec has returned to operations and is targeting Spain with DDoS due to the countries ongoing support of Ukraine. Geopolitical hacktivism continues.

Hacktivist group Azzasec has returned to operations and is targeting Spain with DDoS due to the countries ongoing support of Ukraine.

Geopolitical hacktivism continues.
Steven Lim (@0x534c) 's Twitter Profile Photo

🚨 Overprivileged OAuth apps? Time to audit! 🚨 Following **least privilege**, review admin-consented apps & identify unused permissions. Use the KQL query below to analyze & secure access. github.com/SlimKQL/Huntin…

🚨 Overprivileged OAuth apps? Time to audit! 🚨

Following **least privilege**, review admin-consented apps &amp; identify unused permissions. Use the KQL query below to analyze &amp; secure access.

github.com/SlimKQL/Huntin…
Nathan McNulty (@nathanmcnulty) 's Twitter Profile Photo

Most Microsoft tenants do not have Advanced Auditing configured correctly, and orgs only find out after it is too late :( I tried really hard to make this as short and simple as possible. Please be nice to your IR folks and set this up, it's important ;) nathanmcnulty.com/blog/2025/04/c…

Thomas Naunheim (@thomas_live) 's Twitter Profile Photo

How to hunt sign-ins that bypass #ConditionalAccess 🔐 in #MicrosoftEntra? 💡 Outstanding research by Dirk-jan & Fabian Bader: They published their analysis with identified bypasses of first-party apps and combinations of API and resource combos. 👉 entrascopes.com

Aaron Dinnage (@aarondinnage) 's Twitter Profile Photo

⭐ m365maps.com July 2025 update ⭐ New feature: Tenant Storage Calculator! Plus minor updates and bug fixes. As always, please check the Change Log for details and reach out with any feedback, issues, or suggestions 👍 #m365maps #Microsoft365

Nathan McNulty (@nathanmcnulty) 's Twitter Profile Photo

I am so excited for this! :) I love the smaller family feel of MMS, and Nashville is going to be such a fun venue If you are thinking of going, make sure you register soon - this (intentionally) smaller conference runs out of space pretty quickly ;)

Nathan McNulty (@nathanmcnulty) 's Twitter Profile Photo

📢 Breaking changes: Guest billing for Entra ID Governance I haven't seen any announcements on this and guidance is extremely lacking, so Joe Stocker gave me time to create a script to help everyone assess costs early :) I would love your feedback! github.com/nathanmcnulty/…

📢 Breaking changes: Guest billing for Entra ID Governance

I haven't seen any announcements on this and guidance is extremely lacking, so <a href="/ITguySoCal/">Joe Stocker</a> gave me time to create a script to help everyone assess costs early :)

I would love your feedback!
github.com/nathanmcnulty/…
Speaker 25 (@rodtrent) 's Twitter Profile Photo

Finding Strength in Corporate Life: Reflecting on Philippians 4:13 rodtrent.substack.com/p/finding-stre… #DivineDesign #Jobs #Industry #GodsWay #Career

Finding Strength in Corporate Life: Reflecting on Philippians 4:13 rodtrent.substack.com/p/finding-stre…

#DivineDesign #Jobs #Industry #GodsWay #Career
Doug (@dougsbaker) 's Twitter Profile Photo

I made a video walking through how I locked down browser usage in my org using Microsoft Edge Management inside the M365 Admin Center. ✅ Control extensions ✅ Force Edge sign-in ✅ Deploy policies w/ or w/o Intune ✅ Block Chrome & others 🎥 Watch here: youtu.be/_PE4I47qjRo

Joe Stocker (@itguysocal) 's Twitter Profile Photo

NEW Microsoft Entra SSE feature in public preview: "IT Admins can now set detailed SPN-level policies, such as requiring MFA for cifs/* file shares, enabling compliant device access to MSSQL/* servers, and applying step-up authentication for sensitive RDP servers. This allows

NEW Microsoft Entra SSE feature in public preview: 
"IT Admins can now set detailed SPN-level policies, such as requiring MFA for cifs/* file shares, enabling compliant device access to MSSQL/* servers, and applying step-up authentication for sensitive RDP servers. This allows