A Netskope foi reconhecida como líder novamente no Quadrante Mágico do Gartner®™ para plataformas SASE. Obtenha o relatório

fechar
fechar
Sua Rede do Amanhã
Sua Rede do Amanhã
Planeje seu caminho rumo a uma rede mais rápida, segura e resiliente projetada para os aplicativos e usuários aos quais você oferece suporte.
          Experimente a Netskope
          Coloque a mão na massa com a plataforma Netskope
          Esta é a sua chance de experimentar a plataforma de nuvem única do Netskope One em primeira mão. Inscreva-se em laboratórios práticos e individualizados, junte-se a nós para demonstrações mensais de produtos ao vivo, faça um test drive gratuito do Netskope Private Access ou participe de workshops ao vivo conduzidos por instrutores.
            Líder em SSE. Agora é líder em SASE de fornecedor único.
            A Netskope é reconhecida como a líder mais avançada em visão para as plataformas SSE e SASE
            2X é líder no Quadrante Mágico do Gartner® para plataformas SASE
            Uma plataforma unificada criada para sua jornada
              Protegendo a IA generativa para leigos
              Protegendo a IA generativa para leigos
              Saiba como sua organização pode equilibrar o potencial inovador da IA generativa com práticas robustas de segurança de dados.
                E-book moderno sobre prevenção de perda de dados (DLP) para leigos
                Prevenção Contra Perda de Dados (DLP) Moderna para Leigos
                Obtenha dicas e truques para fazer a transição para um DLP fornecido na nuvem.
                  Livro SD-WAN moderno para SASE Dummies
                  SD-WAN moderno para leigos em SASE
                  Pare de brincar com sua arquitetura de rede
                    Compreendendo onde estão os riscos
                    O Advanced Analytics transforma a maneira como as equipes de operações de segurança aplicam insights orientados por dados para implementar políticas melhores. Com o Advanced Analytics, o senhor pode identificar tendências, concentrar-se em áreas de preocupação e usar os dados para tomar medidas.
                        Suporte Técnico Netskope
                        Suporte Técnico Netskope
                        Nossos engenheiros de suporte qualificados estão localizados em todo o mundo e têm diversas experiências em segurança de nuvem, rede, virtualização, fornecimento de conteúdo e desenvolvimento de software, garantindo assistência técnica de qualidade e em tempo hábil.
                          Vídeo da Netskope
                          Treinamento Netskope
                          Os treinamentos da Netskope vão ajudar você a ser um especialista em segurança na nuvem. Conte conosco para ajudá-lo a proteger a sua jornada de transformação digital e aproveitar ao máximo as suas aplicações na nuvem, na web e privadas.

                            Mitigating the Latest Microsoft Teams Vulnerability with Netskope

                            Jul 24 2023

                            Recently, a team of experts from JumpSEC Labs discovered a vulnerability in Microsoft Teams that allows malicious actors to bypass policy controls and introduce malware through external communication channels. Leaving end-users susceptible to phishing attacks. 

                            Microsoft’s advice is to educate end-users to detect phishing attempts. One workaround would be to disable Microsoft Teams collaboration with external organizations.

                            This particular vulnerability in Microsoft Teams enables threat actors to bypass existing policy controls, allowing them to share links to malicious files within Teams chats, without the end-user ever accepting a message-request. This circumvention of security measures can have severe consequences for organizations, especially considering that Microsoft Teams boasts a user base of 300 million users worldwide.

                            To make matters worse, this attack does not rely on email, bypassing traditional email security measures and abusing the inherent trust end-users have with collaboration tools. Besides end-users, many organizations inherently trust SaaS as a reliable source as well. This translates to security controls where trusted sources are not inspected and thus bypassed.

                            The Netskope Threat Labs Stats for June 2023 blog revealed that 60% of all malware downloads through HTTP/HTTPS were traced back to popular cloud apps. Additionally, 32% of SaaS-delivered malware originated from OneDrive and SharePoint, indicating the need for strengthened security measures on these platforms. The notion that SaaS is considered a ”trusted source” directly contradicts the fundamental principle of zero trust.

                            Based on these principles, organizations should always inspect all downloads for threats, regardless of their origin. This approach allows organizations to enable external parties to share content while still leveraging Netskope Advanced Threat Protection to block malicious file transfers.

                            To effectively combat such threats, organizations need a comprehensive cybersecurity solution that follows the principles of zero trust and secure access service edge (SASE). Netskope implements these principles through its private cloud platform regardless of an organization’s location or the nature of their workloads (Web, SaaS, VPC, IaaS, etc.), protecting users and machines across various environments.

                            The power Netskope provides is the ability to identify and control the usage of specific SaaS instances within a service. This granular control empowers organizations to mitigate and manage risks effectively while enabling collaboration across multiple SaaS platforms. By implementing Netskope, organizations can protect users from interacting with unknown and unmanaged SaaS applications, including those originating from desktop clients like Microsoft Teams. Additionally, Netskope allows organizations to enforce limitations on SaaS activities, such as sharing, liking, reposting, and downloading files, especially when they involve trusted external partners.

                            These capabilities make it possible to protect end-users against these phishing attacks as shown in the diagram below.

                            MS Teams Abuse

                            Additionally, to enable these security measures, Netskope leverages advanced threat protection techniques such as sandboxing and data protection. These features allow for the scanning of sensitive information, such as personally identifiable information (PII), source code, or medical records, to identify potential threats or policy violations. By combining these advanced measures with the robust Netskope security platform, organizations can effectively defend against emerging threats.

                            Netskope’s Advanced Analytics capabilities provide security teams with specific dashboards and valuable insights to assess the risk of rogue cloud instances being exploited for malware delivery or the potential of anomalous communications targeting the organization. Rich details and comprehensive analysis empower security teams to make informed decisions and streamline the mitigation and remediation processes. The Sankey diagram below showcases a visual representation of the interaction between various SaaS, the used instances, and their respective activities.

                            Netskope Advanced Analytics Dashboard to assess the risk of rogue cloud instances

                            The Microsoft Teams vulnerability discussed in this blog highlights the importance of comprehensive visibility, understanding, and control of SaaS, the instances, and the activities within.

                            By leveraging the comprehensive security solutions offered by Netskope, organizations can effectively protect themselves from emerging threats and vulnerabilities by applying zero trust, advanced threat protection and robust data security measures.

                            To learn more on how Netskope can help your organization to mitigate similar risks via instance awareness, watch this demo: Defending against cloud threats with instance-awareness. Additionally, to learn more about the latest emergent cloud-native threats, and how Netskope can mitigate them, subscribe to the Cloud Threats Memos so you don’t miss a threat!

                            author image
                            Mitchell Pompe
                            Mitchell is a cloud security professional in the Netherlands, with 10 years of experience in networking and a master's degree in cybersecurity engineering.
                            Mitchell is a cloud security professional in the Netherlands, with 10 years of experience in networking and a master's degree in cybersecurity engineering.
                            Conecte-se com a Netskope

                            Subscribe to the Netskope Blog

                            Sign up to receive a roundup of the latest Netskope content delivered directly in your inbox every month.