Security


Lax Credential Hygiene at Root of Snowflake Breach: Researchers

Security researchers at Google subsidiary Mandiant have traced the months-long Snowflake security breach to an attack group taking advantage of old credentials and weak authentication methods.

Microsoft To Bolster Security for Outlook Personal Accounts

As part of Microsoft's ongoing Microsoft Secure Future Initiative (SFI), the company is readying three new security enhancements for Outlook personal accounts.

Microsoft Releases Light Security Update for June

June's monthly security update has arrived and it continues the recent trend of lighter-than-usual totals.

Microsoft Will Disable Recall by Default Due to Security Concerns

Microsoft on Friday announced that its controversial new Recall feature (currently in preview) will not be activated by default for Windows users.

Microsoft Releases Azure Bastion 'Premium' Preview

A public preview of a new, more feature-rich SKU of Microsoft's Azure Bastion virtual machine (VM) security product is now available.

Microsoft Warns of Growing Operational Technology Device Attacks

In a recent report, Microsoft warns that the number of attacks targeting Internet-connected operational technology (OT) devices is on the rise.

Microsoft Developing Converged Platform for Multicloud Management

Microsoft on Wednesday announced it is developing a converged platform designed to streamline risk discovery and remediation, with zero trust baked at the core.

Microsoft Enters Into Industry AI Safety Pact

Microsoft, OpenAI, Amazon and Google are among the 16 organizations that have signaled their willingness to police their own procedures around AI development, with the goal of limiting AI misuse and promoting responsible deployments.

Why Intune is Key (and why IT Isn't Using It)

Microsoft MVP Émile Cabot breaks down why Microsoft Intune is essential for endpoint security, and tackles some of our pressing questions on the state of IT security.

Microsoft To Require Multifactor Authentication for Azure Users

Microsoft last week announced that, starting in July, all users of Azure services will be required to set up and use multifactor authentication (MFA) when logging in.

2 Zero-Day Flaw Highlights Small Microsoft May Patch

After April's larger-than-usual security update, Microsoft has pumped the brakes for May, issuing a slimmed-down 59 CVEs (Common Vulnerabilities and Exposures).

Blue Nebula Graphic

How Big Are the AI Security and Privacy Pitfalls?

Enterprise IT has been entrusted with the task of integrating gen AI into their environments, while grappling with emerging security and ethical issues.

Biden Administration Releases Global Cybersecurity Initiative

The U.S. Department of State has released a comprehensive cybersecurity framework aimed at international cooperation when targeting cybercriminals and strengthening defenses.

Microsoft Purview Enhanced with AI Security and Compliance Hooks

Microsoft Purview, the company's data governance solution, is receiving a handful of upgrades to help enterprises securely manage their growing AI-related data.

Hardening Gen AI Application Security with Microsoft Defender for Cloud

Among the avalanche of security announcements this week, Microsoft has kicked off the first day of RSAC 2024 by unveiling new capabilities to protect Gen AI applications in the enterprise with Microsoft Defender for Cloud.

Microsoft Bringing Zero Trust to DNS Security

Microsoft has announced that Zero Trust DNS (ZTDNS), which aims to restrict device access to untrusted domains in Windows, is currently in private preview.

Microsoft Aims To Rehabilitate its Security Image

Microsoft is taking proactive approaches to rehabilitate its somewhat tarnished security record, promising to "do more" to make security a top priority.

Don't Make Active Directory Your Enterprise Security Liability

With cyberattacks targeting Active Directory rising, it's up to IT to harden their environments.

Multi-Tenant Organization Hooks Released for Microsoft 365

Microsoft Entra ID's new multi-tenant organization capabilities have reached general availability (GA).

Real-World Ransomware Recovery

Here's how I was (mostly) successful in recovering a family PC infected with malware.

Subscribe on YouTube