* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Friday, November 14, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Lancaster County’s 2026 quilt shows will have big changes; here’s what you need to know – LancasterOnline

    Exciting Changes Coming to Lancaster County’s 2026 Quilt Shows – Here’s What You Need to Know

    ‘The Price Is Right’ Contestant Said She ‘Manifested’ Her $100,000 Win – CBS 19 News

    ‘The Price Is Right’ Contestant Said She ‘Manifested’ Her $100,000 Win – CBS 19 News

    Billy Bob Thornton says Hollywood told him he ‘wasn’t southern enough’: ‘I am just off the turnip truck’ – Yahoo

    Billy Bob Thornton says Hollywood told him he ‘wasn’t southern enough’: ‘I am just off the turnip truck’ – Yahoo

    Nov. 13 Vallejo/Vacaville Arts/Entertainment Source: Activities – Times Herald Online

    Nov. 13 Vallejo/Vacaville Arts/Entertainment Source: Activities – Times Herald Online

    New Orleans Museum of Art director gets a French award started by Napoleon Bonaparte – NOLA.com

    New Orleans Museum of Art director gets a French award started by Napoleon Bonaparte – NOLA.com

    ‘Little House on the Prairie’ stars reunite for iconic show’s 50th anniversary – Spectrum News

    ‘Little House on the Prairie’ stars reunite for iconic show’s 50th anniversary – Spectrum News

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Figure Technology stock spikes after Q3 revenue surpasses consensus (FIGR:NASDAQ) – Seeking Alpha

    Figure Technology stock spikes after Q3 revenue surpasses consensus (FIGR:NASDAQ) – Seeking Alpha

    Predictive Technology Is Improving Warehouse Safety – ohsonline.com

    Predictive Technology Is Improving Warehouse Safety – ohsonline.com

    mPower Technology opens automated solar module line for space – pv magazine USA

    MPower Technology Launches Cutting-Edge Automated Solar Module Line for Space Applications

    Two Tigers land Liberty League All-Conference honors – Rochester Institute of Technology Athletics

    Two Tigers land Liberty League All-Conference honors – Rochester Institute of Technology Athletics

    Green Technology Book: Solutions for confronting climate disasters – Part 1: Water-related disasters – WIPO – World Intellectual Property Organization

    Green Technology Book: Solutions for confronting climate disasters – Part 1: Water-related disasters – WIPO – World Intellectual Property Organization

    Reimagining cybersecurity in the era of AI and quantum – MIT Technology Review

    Reimagining cybersecurity in the era of AI and quantum – MIT Technology Review

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Lancaster County’s 2026 quilt shows will have big changes; here’s what you need to know – LancasterOnline

    Exciting Changes Coming to Lancaster County’s 2026 Quilt Shows – Here’s What You Need to Know

    ‘The Price Is Right’ Contestant Said She ‘Manifested’ Her $100,000 Win – CBS 19 News

    ‘The Price Is Right’ Contestant Said She ‘Manifested’ Her $100,000 Win – CBS 19 News

    Billy Bob Thornton says Hollywood told him he ‘wasn’t southern enough’: ‘I am just off the turnip truck’ – Yahoo

    Billy Bob Thornton says Hollywood told him he ‘wasn’t southern enough’: ‘I am just off the turnip truck’ – Yahoo

    Nov. 13 Vallejo/Vacaville Arts/Entertainment Source: Activities – Times Herald Online

    Nov. 13 Vallejo/Vacaville Arts/Entertainment Source: Activities – Times Herald Online

    New Orleans Museum of Art director gets a French award started by Napoleon Bonaparte – NOLA.com

    New Orleans Museum of Art director gets a French award started by Napoleon Bonaparte – NOLA.com

    ‘Little House on the Prairie’ stars reunite for iconic show’s 50th anniversary – Spectrum News

    ‘Little House on the Prairie’ stars reunite for iconic show’s 50th anniversary – Spectrum News

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Figure Technology stock spikes after Q3 revenue surpasses consensus (FIGR:NASDAQ) – Seeking Alpha

    Figure Technology stock spikes after Q3 revenue surpasses consensus (FIGR:NASDAQ) – Seeking Alpha

    Predictive Technology Is Improving Warehouse Safety – ohsonline.com

    Predictive Technology Is Improving Warehouse Safety – ohsonline.com

    mPower Technology opens automated solar module line for space – pv magazine USA

    MPower Technology Launches Cutting-Edge Automated Solar Module Line for Space Applications

    Two Tigers land Liberty League All-Conference honors – Rochester Institute of Technology Athletics

    Two Tigers land Liberty League All-Conference honors – Rochester Institute of Technology Athletics

    Green Technology Book: Solutions for confronting climate disasters – Part 1: Water-related disasters – WIPO – World Intellectual Property Organization

    Green Technology Book: Solutions for confronting climate disasters – Part 1: Water-related disasters – WIPO – World Intellectual Property Organization

    Reimagining cybersecurity in the era of AI and quantum – MIT Technology Review

    Reimagining cybersecurity in the era of AI and quantum – MIT Technology Review

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Microsoft’s security roadmap: Protect secrets in Azure DevOps

July 16, 2023
in Technology
Microsoft’s security roadmap: Protect secrets in Azure DevOps
Share on FacebookShare on Twitter

Microsoft has vowed to bulk up security around its Azure DevOps cloud services developers use to build their applications and manage their software projects.

The security enhancements are part of the larger roadmap for Azure DevOps that the cloud giant laid out this week that also includes additions to Azure Boards – for tracking ideas throughout the development lifecycle – and Azure Pipelines to automatically build and test code.

The changes also come as Microsoft bolsters its Entra suite of cloud-based identity and access services, not only by ditching the Azure AD name in favor of Entra ID – a move not fully embraced by all users – but also through its first offerings in the fast-growing security services edge (SSE) space.

One focus for Redmond is the GitHub code repository, which like other code bases – such as NPM and the Python Package Index (PyPI) – has become a target for criminals in supply chain attacks aimed at getting developers to inadvertently dropping malicious code into their applications.

GitHub Advanced Security (GHAS) for Azure DevOps is a suite of tools developers can use to protect their Azure Repos repositories and Pipelines. These include secret scanning to detect such secrets as credentials already in Azure Repos and ways to keep developers from accidentally pushing new secrets and dependency scanning, so they can find known vulnerable open-source packages and fix any problems.

Also in GHAS – which is in public preview and integrated into Azure DevOps – is code scanning, which uses GitHub’s CodeQL semantic analysis engine to identity app security flaws in the source code.

Authentication on the menu

Identity and authentication also will factor heavily in what Microsoft does through at least the rest of the year. The vendor for several years has banged the drum for improved authentication tools – such as ModernAuth and passkeys – as identity becomes a key focus for cyber-attackers.

In Azure DevOps, a key risk is credential theft.

“Azure DevOps supports many different authentication mechanisms, including basic authentication, personal access tokens (PATs), SSH, and Azure Active Directory access tokens,” the company wrote. “These mechanisms are not created equal from a security perspective, especially when it comes to the potential for credential theft.”

Miscreants exploit five Microsoft bugs as Windows giant addresses 130 flaws

Microsoft keeps quiet amid talk of possible DDoS attack against Azure

Microsoft’s Azure mishap betrays an industry blind to a big problem

This typo sparked a Microsoft Azure outage

Criminals can use leaked credentials like PATs to get into organizations using Azure DevOps and access source code, launch supply chain attacks, or compromise the infrastructure.

Microsoft will also release Workload Identity federation for Azure Deployments, first in public preview in the third quarter and then generally by the end of the year. Developers are wary of storing secrets like passwords or certificate in Azure DevOps because they become vulnerable to theft when service connections in Azure DevOps are updated.

Protection through federation

Azure will use the Open ID Connect protocol to support workload identity federation and create service connections in Azure Pipelines that don’t access secrets and which are backed by managed identities with federated credentials in Azure AD.

“As part of its execution, a pipeline can exchange its own internal token with an AAD token, thereby gaining access to Azure resources,” Microsoft wrote. “Once implemented, this mechanism will be recommended in the product over other types of Azure service connections that exist today.”

Microsoft also will support granular scopes to limit the operations of Azure AD OAuth applications, such as viewing source code or configuring pipelines, when connecting to Azure DevOps.

Also by the end of 2023, Microsoft will let applications use managed identities and service principals when integrating with Azure DevOps through REST APIs and client libraries. Most applications now integrate through PATs.

“This highly requested feature offers Azure DevOps customers a more secure alternative to PATs,” Redmond wrote. “And Managed Identities offer the ability for applications running on Azure resources to obtain Azure AD tokens without needing to manage any credentials at all.”

Microsoft takes to SSE

All this comes the same week Microsoft made changes in its Entra suite. The first, as we’ve documented, was the name change from Azure AD to Entra. Another key one was the rollout into public preview of Entra Internet Access and Entra Private Access, Redmond’s first SSE offerings.

Secure Access Service Edge (SASE) hit the scene several years ago when enterprises, faced with having to manage security and identity wirelessly, wanted vendors to converge software-defined WAN and network security functions, such as zero trust, firewall-as-a-service (FWaaS), and cloud access security broker (CASB), into a cloud service.

SSE emerged during the pandemic, essentially ditching the SD-WAN functions and unifying CASB, zero trust, and secure web gateway (SWG) into a service. Microsoft is coming into this space late, with vendors like Cisco, Zscaler, and Palo Alto Networks, among others, already a year or two ahead.

However, Microsoft’s sheer gravitational pull will help it gain market share, as shown by the drop in share prices of Cloudflare, Palo Alto, and Zscaler right after Microsoft announced its SSE move. ®

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : The Register – https://go.theregister.com/feed/www.theregister.com/2023/07/16/microsoft_azure_devops_security/

Tags: Microsoft’ssecuritytechnology
Previous Post

This AI is better than you at figuring out where a street pic was taken just by looking at it

Next Post

Get Protocol Takes on Ticketmaster with $4.5 Million Funding for NFT Ticketing Revolution

Washington forest board takes 200,000 acres out of production – Capital Press

Washington Forest Board Removes 200,000 Acres from Production in Major Move

November 14, 2025
Science Hill’s Sawyer Ward (top) wrestles Montgomery Central’s Audrey Levendusky on her way to gold in the 152-pound weight class at last season’s TSSAA state tournament in Franklin. – Kingsport Times News

Science Hill’s Sawyer Ward (top) wrestles Montgomery Central’s Audrey Levendusky on her way to gold in the 152-pound weight class at last season’s TSSAA state tournament in Franklin. – Kingsport Times News

November 14, 2025
Bluestar Alliance Completes Acquisition of Iconic Workwear and Lifestyle Brand Dickies™ from VF Corporation – PR Newswire

Bluestar Alliance Takes Iconic Workwear and Lifestyle Brand Dickies™ to New Heights

November 14, 2025
Figure Technology stock spikes after Q3 revenue surpasses consensus (FIGR:NASDAQ) – Seeking Alpha

Figure Technology stock spikes after Q3 revenue surpasses consensus (FIGR:NASDAQ) – Seeking Alpha

November 14, 2025
‘He’s just impossible:’ Nikola Jokić’s 55-point game? The best player in the world is having a season like no other — ever – Yahoo Sports

‘He’s just impossible:’ Nikola Jokić’s 55-point game? The best player in the world is having a season like no other — ever – Yahoo Sports

November 13, 2025
Columbia Global Reports Saw the World Coming – Columbia University

How Columbia Global Reports Predicted the Future of Our World

November 13, 2025
Climate finance calls for a new economy – openDemocracy

Building a New Economy: Answering the Urgent Call for Climate Finance

November 13, 2025
Lancaster County’s 2026 quilt shows will have big changes; here’s what you need to know – LancasterOnline

Exciting Changes Coming to Lancaster County’s 2026 Quilt Shows – Here’s What You Need to Know

November 13, 2025
St. Joseph’s nurses, Essentia Health reach tentative contract agreement – KAXE

St. Joseph’s Nurses and Essentia Health Reach Tentative Contract Agreement

November 13, 2025
A rare sight in Washington: The House of Representatives is getting down to work – CNN

A rare sight in Washington: The House of Representatives is getting down to work – CNN

November 13, 2025

Categories

Archives

November 2025
M T W T F S S
 12
3456789
10111213141516
17181920212223
24252627282930
« Oct    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (918)
  • Economy (938)
  • Entertainment (21,811)
  • General (18,162)
  • Health (9,977)
  • Lifestyle (948)
  • News (22,149)
  • People (940)
  • Politics (949)
  • Science (16,150)
  • Sports (21,438)
  • Technology (15,918)
  • World (923)

Recent News

Washington forest board takes 200,000 acres out of production – Capital Press

Washington Forest Board Removes 200,000 Acres from Production in Major Move

November 14, 2025
Science Hill’s Sawyer Ward (top) wrestles Montgomery Central’s Audrey Levendusky on her way to gold in the 152-pound weight class at last season’s TSSAA state tournament in Franklin. – Kingsport Times News

Science Hill’s Sawyer Ward (top) wrestles Montgomery Central’s Audrey Levendusky on her way to gold in the 152-pound weight class at last season’s TSSAA state tournament in Franklin. – Kingsport Times News

November 14, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version