🚨 Entra Conditional Access gotcha from @andrescanello
Selecting every device platform ≠ “Any device.”
An attacker can spoof the browser user-agent, get no platform match, and that CA policy condition won’t apply.
Watch this week’s https://t.co/YTVmebsh6k with Andres for more identity nuggets like this 👇
https://t.co/3tjaWSy8EP
CISA published an advisory on endpoint hardening after Stryker. The RBAC guidance is solid. Multi Admin Approval for Intune is not a complete solution either.
An attacker with Global Admin can create the second approver account themselves. That is a five minute delay, not a defense.
What actually stops this: no standing GA roles, PIM with fresh FIDO2 at activation, and a session revocation circuit breaker that fires the moment bulk wipes start.
We have been on Handala/Stryker since March 12. Here is what CISA got right and what they missed.
https://t.co/8ouL1ZUI5C
#Stryker #Handala #CISAAlert #IdentitySecurity #MDR
I recently updated my #PowerShell script for viewing and exporting UEFI Secure Boot certificates. I added the capability to also parse the DBX database. Enjoy! #security#secureboot#mvpbuzz https://t.co/DgyRo8OU6W
TPM attestation issues for HP devices when using #Windows Autopilot for pre-provisioned deployments. via @Mister_MDM#msintune#mdm https://t.co/jSy5aytGkx
The default #iOS Enrollment method will change from Device to Web-Based Enrollment with #MSIntune 2404 release.
https://t.co/V5TfO2OKKe
https://t.co/Qhvv7V7XdV
[BLOG] Automatically deploy Windows drivers on Patch Tuesday
In this blog post, I'm sharing an automatic way of deploying Windows drivers on Patch Tuesday instead of having them deployed on random days to get a Predictable user experience.
#MsIntune
https://t.co/rWLxaRkMoV
Here is a way to dynamically group devices based on hardware inventory data from Intune. This workaround can unblock you in certain scenarios and you can also leverage the framework to group devices based on files, applications and registry key values.
https://t.co/EuiNVd9nvL
An important change is coming!
@MSIntune will end support for Android device administrator on GMS devices starting in August 2024, impacting enrollments and support.
➡️ Learn more about the impact and what's next: https://t.co/DuEcQJF4Rt
#Android#MSIntune
🔮 The In development page for @MSIntune has been updated for what's coming in future service releases 🙌
👉 https://t.co/tAncDV74Gm
#MSIntune#IntuneInspired
#Reminder you can check the following to see if there are safeguard holds (#GStatus) in place or if your device is #Windows11 eligible (#UpgEx)
Computer\HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\TargetVersionUpgradeExperienceIndicators\NI22H2
💻 Unexpected reboots shaking up your @Windows Autopilot deployment? Dive into our blog post below to conquer troubleshooting and achieve a smooth setup experience.
➡️ Learn more: https://t.co/BjZ6YuxGB2.
#MSIntune#WindowsAutopilot#Windows10#Windows11