-
News
Microsoft plans to stop trusting Secure Hash Algorithm 1 (SHA-1) certificates next month for "all major Microsoft processes and services," according to a Wednesday announcement.
04/14/2021
-
News
The U.S. Federal Bureau of Investigation (FBI) has deleted Webshells on Hafnium-compromised Exchange Server installations across the country, and is now sending notices to victim organizations, according to a Tuesday announcement.
04/14/2021
-
News
Microsoft released security updates for 114 common vulnerabilities and exposures in its software products, while also publishing a supplementary note urging organizations to apply the new April Exchange Server "Critical" patches "as soon as possible."
04/13/2021
-
Posey's Tips & Tricks
A key part of an organization's ransomware-prevention strategy is creating Exchange mail flow rules that take action against messages that are likely to contain ransomware.
03/31/2021
-
News
IT pros are getting a modest bump-up in oversight capabilities with the Azure Active Directory improvements that were announced this month.
03/30/2021
-
Posey's Tips & Tricks
Backups aren't just the last line of defense against ransomware. If you know the signs, your backups can also help you stop a ransomware attack that is currently in progress.
03/29/2021
-
News
Microsoft on Thursday published a comprehensive description of the Exchange Server attack methods currently taking advantage of four zero-day flaws in those products, and offered extensive advice.
03/26/2021
-
News
Microsoft on Thursday highlighted a few additions this month for users of Microsoft Endpoint Manager, which is used for configuring and managing devices and servers.
03/26/2021
-
News
Microsoft on Tuesday announced a preview of an enhancement to Microsoft Defender for Endpoint on Linux's anti-virus solution, adding behavior monitoring, deep scanning and blocking capabilities.
03/24/2021
-
News
A couple of industry-sponsored studies on security practices associated with supporting remote workforces were recently published this week.
03/23/2021
-
News
Microsoft on Thursday clarified that organizations running Exchange Server can get automatic security mitigations against Hafnium attacks via Microsoft Defender Antivirus.
03/19/2021
-
News
The Microsoft Security Response Center team on Tuesday issued "Guidance for Responders," which provides more advice on how organizations can respond to the recent attacks that are leveraging Exchange Server zero-day flaws.
03/18/2021
-
Posey's Tips & Tricks
Once universally loathed, UAC is now a very useful tool for blocking Windows security threats. Here's how to make sure you're using it appropriately.
03/17/2021
-
News
Microsoft on Tuesday announced the release of a one-click tool to apply temporary security protections against the recent Exchange Server attacks from the "Hafnium" advanced persistent threat group and other attackers.
03/16/2021
-
Microsoft announced a lot of Azure SQL news at Ignite this month, but few as critical to application development security than the public preview of Always Encrypted with secure enclaves. Here's how to get started with this new feature.
03/15/2021
-
News
Exchange Servers are getting attacked to install ransomware, dubbed "DearCry," Microsoft warned on Thursday.
03/12/2021
-
Another reason to patch early and patch often: The Exchange Server zero-day vulnerabilities Microsoft first disclosed earlier this month are now being used in ransomware.
03/12/2021
-
News
The U.S. Cybersecurity and Infrastructure Security Agency and the Federal Bureau of Investigation announced a Microsoft Exchange Server joint advisory that offers consolidated advice for Exchange Server users on detecting Hafnium attacks.
03/10/2021
-
News
Microsoft has released software security updates addressing 89 common vulnerabilities and exposures (CVEs), according to security researchers.
03/10/2021
-
Posey's Tips & Tricks
Those with a business or enterprise subscription to Microsoft 365 have the option to create a policy that will greatly reduce the chances of a user becoming infected from a malicious e-mail.
03/10/2021
-
News
Microsoft's Exchange team on Monday announced additional help for organizations having trouble trying to patch Exchange Server products quickly in response to the Hafnium attacks.
03/09/2021
-
News
Microsoft has updated its recommendations to organizations running Exchange Server, targeted in Hafnium nation-state attacks, by describing some new resources.
03/08/2021
-
Posey's Tips & Tricks
Microsoft's go-to solution for anti-phishing protection is an anti-phishing policy. Here's how to create one in Microsoft 365.
03/08/2021
-
News
Microsoft this week described "three new pieces" of malware that were used in the SolarWinds Orion espionage attacks dubbed "Solorigate," although Microsoft security researches are now calling it "Nobelium."
03/05/2021
-
Posey's Tips & Tricks
These are the top four privacy settings to check in your Windows device to make sure Microsoft doesn't collect any data you don't want it to.
03/03/2021