19 Aug 2020

Azure AD: Successful Logins From Unknown Users

By |2022-12-27T15:40:06-08:00Aug 19, 2020 - Wednesday|Microsoft 365, Security, Technology|

Read: 3 mins. The Security Operations Center (SOC) noticed logins to Azure Active Directory (AAD) from yahoo.com and gmail.com email addresses and asked the IT Security team to investigate. At the time, we did not allow many B2B Guest credentials for those domains, but alarmingly, the accounts in question successfully authenticated even though they did not exist in our AAD tenant. Who were those people? Did we have a security breach? What did they access?

Go to Top