Earlier quoted context omitted.
I couldn't agree more. Why is the API not public? Is it because some sort of top secret corporate conspiracy? Or is it that management just decided to avoid the burden of publishing and maintaining an immature or lesser used API? After reading your comment that whole article seemed a little sensationalist
> just decided to avoid the burden of publishing and maintaining an immature or lesser used API "Burden" is an understatement. Any API Microsoft documents becomes part of their ongoing commitment to eternal backward-compatibility. (Heck, even some things they never document at all still end up forced into that commitment, like the internal registry hives in Windows 95.) So Microsoft do everything they can to only doc…
Exposing the secret Office 365 detailed activity logs and forensics tool
31–40 of 42 posts
Re: Exposing the secret Office 365 detailed activity logs and forensics tool
#32Earlier quoted context omitted.
If an API is undocumented, how can you know that it doesn't exist? It might very well exist for internal debugging purposes, just not at the URL you might expect. Or maybe it's at the expected URL but returns 404 to everyone whose access token isn't flagged as an employee in the appropriate department. As someone who relies very heavily on logs to debug issues in immature and/or fast-moving products, I would be surpr…
In the modern era, you should expect that the privacy policy contains the details of everything that's logged. You need to know that so you can tell your customers what is logged by your subs.
Perhaps corporations with a history of abusive tactics and legal shenanigans, would prefer to follow a different path?
Re: Exposing the secret Office 365 detailed activity logs and forensics tool
#33Because your right to make money is equivalent to other people's right to remain alive.
Re: Exposing the secret Office 365 detailed activity logs and forensics tool
#34Re: Exposing the secret Office 365 detailed activity logs and forensics tool
#35I looked at the API calls on the CrowdStrike blog post and I have been using parts of these API's for calls in PowerShell for at least the past year for tracking down issues we have had in Office 365. I can understand how frustrating it can be if your competitors seem to have "secret knowledge". However that knowledge may have been gotten by calling up the very helpful people at MS support, laying out the problem and…
I couldn't agree more. Why is the API not public? Is it because some sort of top secret corporate conspiracy? Or is it that management just decided to avoid the burden of publishing and maintaining an immature or lesser used API? After reading your comment that whole article seemed a little sensationalist
My guess is that it's due to one of the following:
* The API isn't considered beta yet. * This was created as somewhat of a side project and hasn't been formalized yet. * Documenting it is on the backlog. * It's meant for internal use in that they may be building in tools in the Security and Compliance center that will be calling it.
Re: Exposing the secret Office 365 detailed activity logs and forensics tool
#36> The tide turned on Friday, June 8. Out of the blue, an email popped onto the forensics community mailing list. It contained a single link, to an Anonymous video. All that video said was "the API you seek is called Activities". Am I missing the joke, or is the name of the API literally the only thing that they needed to get this working?
Re: Exposing the secret Office 365 detailed activity logs and forensics tool
#37> It was as if Alexander Fleming had discovered penicillin but kept the details hidden in order to make more money. It just seemed wrong. Because your right to make money is equivalent to other people's right to remain alive.
Re: Exposing the secret Office 365 detailed activity logs and forensics tool
#38I looked at the API calls on the CrowdStrike blog post and I have been using parts of these API's for calls in PowerShell for at least the past year for tracking down issues we have had in Office 365. I can understand how frustrating it can be if your competitors seem to have "secret knowledge". However that knowledge may have been gotten by calling up the very helpful people at MS support, laying out the problem and…
Re: Exposing the secret Office 365 detailed activity logs and forensics tool
#39Earlier quoted context omitted.
> just decided to avoid the burden of publishing and maintaining an immature or lesser used API "Burden" is an understatement. Any API Microsoft documents becomes part of their ongoing commitment to eternal backward-compatibility. (Heck, even some things they never document at all still end up forced into that commitment, like the internal registry hives in Windows 95.) So Microsoft do everything they can to only doc…
They could just flag it “volatile”, “unstable” or something. It’s very unlikely that Microsoft did not properly document the api internally and as you see it’s leaking out anyway.
Re: Exposing the secret Office 365 detailed activity logs and forensics tool
#40I looked at the API calls on the CrowdStrike blog post and I have been using parts of these API's for calls in PowerShell for at least the past year for tracking down issues we have had in Office 365. I can understand how frustrating it can be if your competitors seem to have "secret knowledge". However that knowledge may have been gotten by calling up the very helpful people at MS support, laying out the problem and…
This is absolutely not true. I called O365 yesterday (well, they called me at my request) to investigate a potential data breach. All the guy on the phone could do was to read to me out of a technicians manual and then suggest I purchase the Azure Active Directory P2 plan at $9/user/month.
I respect that fact that CrowdStrike and others have spent the time with the api and made life a lot easier for others. As someone who has spent more time than he wanted with the Office 365 API I am a fan of people who make my life easier. That being said I am not buying the drama that these API's have been hidden.