Most Active Speaker

Nestori Syynimaa

Nestori Syynimaa

Principal Identity Security Researcher @ Microsoft

Tampere, Finland

Actions

Dr Nestori Syynimaa is a Principal Identity Security Researcher at Microsoft Threat Intelligence Center He has over a decade of experience with the security of Microsoft cloud services and is known as the creator of the AADInternals toolkit. Before joining Microsoft in early 2024, Dr Syynimaa worked as a researcher, CIO, consultant, trainer, and university lecturer for over 20 years.

Dr Syynimaa has spoken in many international scientific and professional conferences, including IEEE TrustCom, TROOPERS, BSides, Black Hat USA, Europe, and Asia, Def Con, and RSA Conference.

Badges

  • Most Active Speaker 2025

Area of Expertise

  • Business & Management
  • Information & Communications Technology

Topics

  • Information Security
  • Cloud & Infrastructure
  • Azure Active Directory
  • Office 365

Abusing Azure Active Directory: Who would you like to be today?

Azure AD is used by Microsoft Office 365 and over 2900 third-party apps. Although Azure AD is commonly regarded as secure, there are known security issues regarding to identity federation, pass-through authentication, and seamless single-sign-on.

In this session, using AADInternals toolkit, I will demonstrate how to create backdoors, impersonate users, and bypass MFA. Methods for detecting rogue behaviour are also introduced.

The purpose of this session is to raise awareness of the information security, the importance of the principle of least privilege, and the crucial role of on-prem security to cloud security.

Cloud Identity Summit '21 Sessionize Event

September 2021

Virtual Scottish Summit 2021 Sessionize Event

February 2021

psconf.eu 2020 Sessionize Event

June 2020 Hannover, Germany

Scottish Summit Sessionize Event

February 2020 Glasgow, United Kingdom

Nestori Syynimaa

Principal Identity Security Researcher @ Microsoft

Tampere, Finland

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top