| GitHub | https://github.com/dagronf |
| GitHub | https://github.com/dagronf |
Time Machine is _awesome_ and is one of the best improvements Apple ever added to its OS.
However...
* Plug in Time Machine backup drive
* Wait for 30 mins for 3 gig backup (expected, as hasn't been backed up to in a while).
* Walk away to get a coffee, come back five minutes later, click 'Perform backup' to the same backup drive.
* Wait for 10 minutes for 1.5 gig backup.
What on earth changed in those five minutes?
Microsoft Copilot for SharePoint just made recon a whole lot easier. 🚨
One of our Red Teamers came across a massive SharePoint, too much to explore manually. So, with some careful prompting, they asked Copilot to do the heavy lifting...
It opened the door to credentials, internal docs, and more.
All without triggering access logs or alerts.
Copilot is being rolled out across Microsoft 365 environments, often without teams realising Default Agents are already active.
That’s a problem.
Jack, our Head of Red Team, breaks it down in our latest blog post, including what you can do to prevent it from happening in your environment.
📌Read it here: https://www.pentestpartners.com/security-blog/exploiting-copilot-ai-for-sharepoint/
#RedTeam #OffSec #AIsecurity #Microsoft365 #SharePoint #MicrosoftCopilot #InfoSec #CloudSecurity

TL;DR Introduction SharePoint is a Microsoft platform that enables collaborative working and information sharing. This done with team sites. They work like regular intranet pages with graphics and text, but they also give you places to store and manage your files. Notably, when files and images are shared on Microsoft Teams, SharePoint automatically creates a […]