Open Frichetten opened 2 months ago
Some actors spam the AdministratorAccess Policy which is poor OpSec. They should instead (if they have the permissions), obfuscate their permissions with a policy that permits this. I'm thinking *, ?, the whole nine yards.
*
?
Permiso has some really good content on this in a blog post. Need to reference it and their tool. https://permiso.io/blog/introducing-sky-scalpel-open-source-tool
Some actors spam the AdministratorAccess Policy which is poor OpSec. They should instead (if they have the permissions), obfuscate their permissions with a policy that permits this. I'm thinking
*
,?
, the whole nine yards.