Join Steve Goodman, Paul Robichaux, and Bastiaan Verdonk as they delve into the critical security vulnerabilities affecting on-premises SharePoint servers, including the "ToolShell" exploit chain (CVE-2025-49704, CVE-2025-49706, CVE-2025-53770, CVE-2025-53771) which enables unauthenticated remote code execution. They discuss the scale of the problem, the threat actors involved, and the crucial need for immediate patching and robust operational practices for any remaining on-premises deployments.
The conversation then shifts to the overwhelming challenge of managing the constant stream of updates and changes within Microsoft 365. Special guest Tom Arbuthnot shares insights from his work with Empowering Cloud and their "Change Pilot" service, detailing how they use AI and expert review to help organizations navigate the deluge of Message Center notifications, prioritize impactful changes, and manage the communication around them. Discover practical strategies for staying ahead of the curve in the fast-paced world of Microsoft 365.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
In Season 4, Episode 41 of the Practical 365 Podcast, hosts Steve Goodman and Paul Robichaud explore a range of pressing topics in the tech world. They kick off with a deep dive into the Microsoft 365 Copilot exploit, "Echo Leak," discussing its implications for AI safeguards and the future of agentic AI. The conversation then shifts to a recent global outage affecting Google and Cloudflare, highlighting the challenges of maintaining hyperscale services. The hosts also examine Microsoft's new initiative to offer containerized M365 instances in Europe, addressing concerns over data sovereignty. Finally, they discuss the latest advancements in Copilot agents, emphasizing the importance of understanding AI reasoning.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
In this episode, Steve Goodman and Bastiaan Verdonk interview Victor King from Quest on best practices for Active Directory security. They discuss identifying misconfigurations, managing privileged access, and continuous environmental monitoring.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
Steve and Paul dissect Microsoft's latest financial report, explore Viva Engage's future, and discuss the role of AI in project management.
Adam Banks shares insights on cybersecurity, accountability, and the mindset shifts needed for IT leadership.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
Steve Goodman and Paul Robichaux dissect the latest Microsoft news, focusing on the sting of rising on-premises licensing costs. The team also explores Copilot Studio and the Model Context Protocol (MCP). Plus, Steve Goodman and Bastiaan Verdonk interview Microsoft's Janice Ricketts, to unravel the complexities of Global Secure Access (GSA) and Zero Trust security.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
Steve and Paul cut through the noise of a million Message Center notifications to bring you the need-to-know on Exchange Online's new sending limits. Plus, security expert Louis Mastelinck schools Steve & Bastiaan on practical Conditional Access – because let's face it, most deployments are a mess.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
Paul Robichaux and Steve Goodman discuss Exchange Server's 2025 H1 update and cut through the hype around AI agents, questioning whether they're living up to the marketing. Then, cybersecurity expert Paula Januszkiewicz shares fascinating red team stories, including modifying a water cooler to gain network access, and offers practical security advice for organizations of all sizes. Paula explains how AI is transforming both sides of the cybersecurity battlefield, warns about "productive script kiddies," and emphasizes why even small businesses need basic security measures like MFA. A must-listen for IT pros concerned about modern security threats.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
It's the last Practical 365 podcast starring Rich Dean, as he departs for pastures new in the next chapter of his career, but we aren't ending with a damp squid of an episode - on the show this week, we do a bit of a lessons learnt: We chat about some of the top guests we've had on the show, and what interesting nuggets of information are still relevant today, and in some cases what has changed.
Rich also introduces Steve to our new co-host, Bastiaan Verdonk, and on the show you'll get to know Bastiaan a little better. Thankfully Steve got all manner of Bastiaan Host cybersecurity jokes out of the way prior to recording, so you can look forward to another enjoyable episode free from terrible jokes, and remaining as informative as ever.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
Join Steve Goodman and Paul Robichaux to discuss Microsoft's latest announcements, including the surprise move to make Copilot Chat free for all Microsoft 365 users, significant changes coming to Exchange Online audit logging, and the new Outlook's arrival via Windows Update. Plus, get their takes on Microsoft's major AI reorganization with the new CoreAI division, and what all these changes mean for IT pros as we start 2025.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
Join Steve Goodman and Paul Robichaux for the penultimate episode of 2024, where they discuss Microsoft's significant end-of-year announcements, including the retirement of Viva Goals, major infrastructure changes with cloud.microsoft domains, and the future of Outlook. Plus, get their takes on Microsoft's latest AI developments and what these changes mean for IT pros.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
In this week's show, Paul and Steve discuss the latest Microsoft Places announcements, debate whether Teams tries to be too many things at once, and examine the sometimes confusing world of Copilot integration across Microsoft 365 services. Plus, we share our thoughts on Microsoft Ignite logistics and what we hope for the future of the conference.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
In this episode of the Practical 365 Podcast, Steve Goodman and Rich Dean are joined by Merill Fernando, Principal Product Manager at Microsoft, for a deep dive into identity management and community-driven innovation. As we approach Microsoft Ignite, Merill shares insights on upcoming announcements in security and identity management, including the new Global Secure Access solution. Plus we discuss various tech Meryl contributes to with the community, in particular Maester.dev, an open-source PowerShell based security framework.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
In our first of two Practical 365 Podcasts before Ignite begins, Steve Goodman and Paul Robichaux dive deep into what was best in Microsoft's Wave 2 release and chat about Copilot Pages - is it a good move from Microsoft?
In other crucial news, we address the approaching end of support for Exchange Server 2016 and 2019, and what organizations need to consider as they plan their migration strategy. Plus, we look at the latest Teams meeting features, including new Copilot controls, meeting recap integrations with Outlook and new device support.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
In the show this week, Steve Goodman and Rich Dean are joined by Rod Trent. Rod discusses his extensive background in content creation and his current role at Microsoft, focusing on the evolution of AI in cybersecurity, particularly through the lens of Copilot for Security. The discussion covers the challenges of AI adoption, the importance of asking the right questions, and the need for trust in data integrity. Trent emphasizes the role of plugins and integration with other tools, the skills gap in cybersecurity, and the future of security operations centers. He also highlights the balance between automation and human oversight, the importance of quick decision-making, and the resources available for learning about Copilot for Security.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
Cybersecurity expert Shinesa Cambric joing Steve Goodman to discuss the evolving landscape of IT. In this episode, we explore the parallels between AI adoption and the cloud revolution, and get into the changing nature of identity in our digital world. Shinesa shares insights from her 20+ years in IT and gives a sneak peek into her upcoming TEC 2024 keynote.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On the show this week, Steve Goodman is joined by IT industry veteran, Paul Thurrott to talk a variety of subjects he'll be speaking on in his keynote at TEC 2024 - namely Windows and Copilot. As Microsoft have had a turbulent year with both, we get Paul's take on it.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
Joining Steve Goodman on this week's podcast, is Paul Robichaux - as a guest alongside MVPs Tony Redmond and Michel de Rooij. Tony talks to us about his upcoming TEC session and explores some of the darker secrets of Microsoft 365 and what IT teams need to know as they continue manage it. And managing it doesn't get more fun than when you use PowerShell, which we talk to Michel de Rooij about as he's presenting at TEC and hosting the pre-conference workshop.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On the show this week, Steve Goodman and Rich Dean are joined by speaker guest, TEC speaker & 20-time Microsoft MVP, Derek Melber. On the show, Derek gives invaluable tips on how to ensure your AD remains secure in a world of cloud and on-premises threats, and we discuss an important but often ignore topic - removing NTLM passwords from use in your organization. And we delve into the aftermath of Crowdstrike, digging a little deeper on the analysis of how some organizations weren't prepared.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On the show this week, Steve and Paul discuss the Crowdstrike outage and its fallout, and discuss important changes coming to OneDrive for Business that you'll need to pay attention to. In other news, Copilot for Planner is in preview - but there's a big catch!
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
Microsoft Places preview, Outlook Classic rebrand, and AI upgrades for Teams Rooms highlight this week's Practical 365 podcast. We discuss the potential impact of Places in the hybrid work landscape, the implications of Outlook's renaming, and how AI-powered speaker recognition is enhancing Teams meetings. Plus, we cover key Microsoft 365 roadmap items, including automatic work location settings in Teams and new Copilot features coming later this year.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On the Practical 365 podcast this week, Rich Dean and I tackle a hot topic that's got the tech world buzzing - Microsoft's alleged security misstep that may have paved the way for the SolarWinds hack.
We also chat with Julian Stephan from Quest Software, who shares some valuable insights on Active Directory modernization.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On this week's show, Steve and Paul are joined by Microsoft's Karin Skapski, who'll be presenting "Keeping Current in the Cloud: Automate and Stay Ahead" at TEC 2024, and joins us to discuss automation, Copilot and much more.
Plus, Steve and Paul discuss Windows Recall and whether this is a good move by Microsoft, and in Microsoft 365 we discuss new features coming to SharePoint and Copilot studio.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
In this week's episode of the Practical 365 podcast, Steve Goodman and Rich Dean are were joined by Microsoft's Andy Jaw, a senior Microsoft security specialist with a fascinating background spanning the military, law enforcement, and now as a cyber security expert.
Chapters
00:00 Introduction and Background
13:20 The Importance of a Response Plan
23:02 The Role of Technology in ITDR
28:22 Implementing Security Measures
33:21Microsoft's Security Solutions
35:26 Closing the Gap: Predefined Playbooks and Practice
36:11 The Importance of Multi-Factor Authentication (MFA)
38:48 The Need for a Recovery Plan for Active Directory (AD)
39:43 Testing and Practicing Backup Solutions and Disaster Recovery
50:14 The Role of Security in Organizations
01:02:11 Establishing an Emergency Operations Center (EOC)
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On this week's episode, Paul and Steve cover several major Microsoft announcements impacting the future of AI, Exchange Server, and identity solutions. We discuss Microsoft's development of a massive in-house AI model called MAI-1 to potentially reduce reliance on OpenAI. And, we break down the newly released roadmap for Exchange Server, including details on the upcoming Subscription Edition launch. Finally we chat about Microsoft's unveiling of external authentication methods for Entra ID, enabling third-party MFA integration.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On this week's episode of the Practical 365 podcast, Rich Dean, Paul Robichaux and I were joined by Alex Weinert, Director of Identity Security at Microsoft, to discuss the critical topic of identity threat detection and response (ITDR). Alex shared his valuable insights and experiences on safeguarding identity systems from sophisticated cyber attacks and hardening identity infrastructure against emerging threats.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On the show this week, we're joined by fellow Microsoft MVP and long-term PowerShell, Exchange and Microsoft 365 expert, Michel De Rooij. We discuss PowerShell (naturally), GitHub Copilot, and we talk about the latest news for Exchange Online, Teams and Microsoft 365
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On Season 4, Episode 16 of the Practical 365 podcast: Steve Goodman and Rich Dean chat about TEC Europe 2024 and cover some of the most important topics in the world of Microsoft 365, including Entra ID Conditional Access changes to be aware of, Copilot for Security reaching GA, plus lots more.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On the show this week, Jon Jarvis, Microsoft MVP and expert in Intune, Microsoft 365 Security & Compliance (and more) joins us to answer our burning questions after his recent blog post on the site. Should you be on-boarding your older machines that pre-date your Intune implementation, or re-building them? And, what's the best way to approach migrating your existing GPOs across to Intune if you are using tooling to move your devices from AD joined to Entra ID only?
And of course, a show wouldn't be complete without some of the most pressing Microsoft 365-related news, so find out about the new Copilot (and Microsoft 365 Search) features that you might find helpful if you've discovered that there's far more openly accessible SharePoint sites than first imagined..
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
In Season 4 Episode 14 of the Practical 365 podcast, Steve Goodman and Rich Dean discuss the upcoming Experts Conference (TEC) European Roadshow, the retirement of EWS Application Impersonation in Exchange Online, and the release of Exchange On-Premises Cumulative Updates. They also welcome guest Becky Cross, a Technical Product Manager at Quest Software, to discuss the various paths organizations can take when moving from hybrid or traditional Active Directory setups to Entra ID.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!
On the show this week, Steve and Paul talk through a plethora of new updates arriving in Microsoft Teams, many going straight to the new Teams client; and Entra ID leaps forward towards a zero trust by default stance - we find out how. We discuss how Microsoft are doing well financially, but are they still providing great customer support; and Andy Honeycutt, Microsoft MVP joins us to discuss Copilot adoption in the real world.
Want to stay up to date on all things Practical 365?
Follow us on Twitter, Facebook, and Linkedin to stay up to date on all things Microsoft!