
Security
How AdminDroid Helps Detect Storm-2949 Attacks Early in Microsoft 365
Detect Storm-2949 attacks in Microsoft 365 using AdminDroid. Identify and act early before it escalates into a cloud breach
8 min read
Until now, organizations needed an Office 365 Extra File Storage add-on for additional SharePoint storage, which required fixed-capacity purchases that often led to unused costs. To address this, Microsoft has introduced a pay-as-you-go billing model for SharePoint storage in Microsoft 365. This allows organizations to pay only for the additional storage they consume beyond their included quota. In this blog, we’ll explore Microsoft’s pay-as-you-go SharePoint storage model and how it can help optimize costs.
The introduction of Device Soft Delete in Microsoft Entra ID (Public Preview) brings a much-needed recovery layer for device management. Instead of being permanently deleted, devices now move into a soft-deleted state, allowing admins a 30-day window to restore them when needed.
Starting in early June 2026, Microsoft Outlook will support external email tags within inbox rules, allowing users to automatically organize and categorize external emails for improved prioritization.
Microsoft has integrated the Power Automate workflow experience directly into SharePoint Online. This allows users to view, create, and manage workflows without leaving the SharePoint site interface. This also introduces a context-aware “Mad-Lib” style automation experience that automatically prefills trigger inputs such as SharePoint sites, lists, and libraries to simplify workflow creation.
Storm-2949 is a sophisticated identity-based attack campaign where a single compromised Microsoft 365 account can lead to wider access across Microsoft 365 and Azure environments. Instead of relying on malware, the attackers abused trusted Microsoft services, MFA workflows, tokens, and permissions to silently move deeper into the environment.
The new Security Detection Report in the Teams admin center helps admins monitor messaging threats across Teams, including impersonation attempts, malicious links, and weaponizable file types. Available from late June 2026, it enables admins to review threats, export detection details, and block malicious external users identified in the report.
Struggling to automate secure monitor manage M365?
Try AdminDroid for Free!Kavya is a Microsoft 365 and Active Directory expert with 11 years of experience, focusing on security hardening and PowerShell-driven automation for large-scale administrative environments. Her work combines deep technical execution with clear structure, enabling administrators to automate controls, improve visibility, and strengthen security posture. She also supports technical validation to ensure accuracy and reliable real-world implementation.

Detect Storm-2949 attacks in Microsoft 365 using AdminDroid. Identify and act early before it escalates into a cloud breach
8 min read

Explore 10 best practices to secure admin accounts in a hybrid environment to reduce the attack surface & safeguard against evolving threats.
7 min read

Explore how to reset MFA using Microsoft 365 Admin Center & PowerShell. Download the Pre-built script to solve 25+ MFA reset scenarios.
8 min read

Check out 6 essential Microsoft 365 password settings to enhance security and improve Microsoft Secure Score.
6 min read

Discover AdminDroid, your ultimate tool for Office 365 reporting, available on Azure Marketplace - Gain insights and manage your M365 environment efficiently.
2 min read

Now, MS Graph has the ability to retrieve per-user MFA status for M365 users. Download this PowerShell script to export per-user MFA status report to CSV file.
4 min read

Generate insightful reports and create stunning visualizations from your spreadsheet data. Transform your data into visual insights with GPT-4o!
3 min read

Discover the top 5 Microsoft 365 features admins want to disable. Dive into the details and decide if it's time to hit that 'off' switch!
5 min read

This blog lists various Microsoft 365 services, products, technologies that are going to deprecate in 2024 - Admins can plan for necessary migrations or updates
6 min read

MS Graph exposes 'Last Successful Sign-in Date' for Microsoft 365 Users. Download the PowerShell script to export 10+ inactive users reports.
4 min read

Disable self-service purchase capability to avoid users signing up for Teams Premium trial directly. Act now and don't regret later.
2 min read

As an AdminDroid alternative, you can refer to this guide to get instant reports on Microsoft 365 and efficiently manage your organization.
14 min read

Learn about Device Soft Delete in Microsoft Entra ID and how deleted devices can be recovered within a 30-day window before permanent removal.
4 min read

Discover the free Microsoft 365 license cost optimization tool with 15+ actions to find hidden license costs, monthly savings, & cut costs.
12 min read

Learn the differences between server-side and client-side email signatures in M365, know their limitations, and choose the right approach.
6 min read

Discover best practices for Active Directory break glass accounts to ensure secure and reliable access during critical incidents.
11 min read

Explore the Account Discovery feature that finds existing user accounts in Entra ID applications and helps you identify unmanaged identities easily.
4 min read

Explore Microsoft 365’s modern change management model, including audience-based releases, Message Center updates, and MCP servers.
6 min read

Compare Microsoft 365 E5 vs E7's features, pricing, preview limitations, and decision factors to determine if the $99 E7 upgrade is worth it.
10 min read

With File Level Archiving in SharePoint Online, archive files to a lower-cost storage tier while preserving permissions, metadata & versions.
11 min read

Learn how to prevent calendar phishing attacks in Microsoft 365 and protect users from malicious meeting invites that bypass email security.
12 min read

Explore Microsoft’s update on Entra Kerberos for hybrid-join devices and learn how to configure it for seamless device synchronization.
6 min read

Learn different ways to clean up file version history in SharePoint Online to optimize storage and maintain a healthy M365 environment.
13 min read

Learn how to prevent Teams sprawl with 10 proven strategies to improve governance and reduce security risks.
12 min read