ABT Blog

Read about mortgage technology solutions topics

Microsoft 365 device code phishing attack pathway showing token replay from Railway PaaS infrastructure to a compromised financial institution tenant

26 min read

M365 Device Code Phishing: MFA Is Being Bypassed at Scale

Prefer to watch? Every security control did its job. The tokens still went to the attacker. Watch the 26-second Short, then the 10-minute walkthrough of the $625K wire diversion - and the one Conditional Access toggle that stops it. 60-Second Short...

Read More
Kerberos RC4 to AES migration countdown showing April 14 2026 deadline with service account authentication and encryption security concept

11 min read

Kerberos RC4 to AES: The April Patch That Will Break Your Service Accounts

In This Article What CVE-2026-20833 Actually Changes The Three-Phase Timeline The 15-Minute Audit That Prevents the Outage What the Encryption Values...

Read More
Microsoft 365 Data Loss Prevention architecture for financial services showing GLBA sensitive information detection and Purview compliance monitoring for examiner readiness

14 min read

M365 DLP for Financial Services: The Configuration Guide Your Examiner Expects

In This Article Why Alert, Not Block Guardian's Two-Stack DLP Architecture The Four GLBA Sensitive Information Types The Configuration Guide Your...

Read More
Third-party AI connectors evaluated for Microsoft 365 tenant access showing Claude and ChatGPT integration governance decision framework for CISOs at financial institutions

11 min read

Should You Connect Claude or ChatGPT to Your M365 Tenant? A CISO Decision Framework

In This Article The Permission Models Are Not Equal Conditional Access Policies for Third-Party AI The 5-Question CISO Framework Data Residency and...

Read More
Microsoft Copilot prompt injection attack concept showing AI security warning with data exfiltration risk for financial institutions using M365

12 min read

Is Microsoft Copilot Safe? The Prompt Injection Risk Your Financial Institution Must Address

In This Article How Prompt Injection Works Against Copilot Why Prompt Injection Is an Industry Problem What Your Governance Team Needs to Do How...

Read More
Copilot governance dashboard showing AI usage monitoring analytics with Purview compliance metrics and security controls for financial institutions

13 min read

Copilot Governance Dashboard: How to Monitor AI Usage in Your M365 Tenant

Prefer to watch? Your examiner asks who is using Copilot and what data it has touched. Watch the 30-second version for the stakes, or the longer...

Read More
Entra ID security assessment concept showing identity management audit with seven queries and Microsoft Azure AD security posture visualization

11 min read

Entra ID Security Assessment: 7 Queries That Replace 2 Hours of PowerShell

In This Article 7 Queries That Run a Complete Entra ID Audit What to Fix First: Remediation by Priority Entra ID P1 vs P2 for Financial Institutions...

Read More
AI readiness data showing Frontier Firms outperform laggards across financial institutions

9 min read

The Data Behind AI Readiness: What Frontier Firms Know That Laggards Don't

In This Article The Frontier Gap: 88% vs. 23% The BYOAI Compliance Bomb Ticking Inside Your Network Copilot ROI Math: 223% Over Three Years The...

Read More
Deepfake voice fraud targeting credit unions illustration showing AI-generated voice waves attacking a phone system

12 min read

Deepfake Voice Fraud Hits Credit Unions: The $2.57M Wake-Up Call

Prefer to watch? North Korean operatives are now passing video interviews with synthetic faces and background checks. Watch the 21-second Short that...

Read More
AI fraud threat landscape for financial institutions showing 4.5x profitability multiplier

12 min read

AI Fraud Is 4.5x More Profitable — What Financial Institutions Must Know Now

Prefer to watch? AI fraud returns 4.5x the profit of old-school attacks -- and banks are the first test market. Watch the long-form walkthrough on...

Read More