Protecting Microsoft 365 from on-premises attacks

Protecting Microsoft 365 from on-premises attacks https://ift.tt/2WGMw05 Many customers connect their private corporate networks to Microsoft 365 to benefit their users, devices, and applications. However, there are many well-documented ways these private networks can be compromised. As we have seen in recent events related to the SolarWinds compromise, on-premises compromise can propagate to the cloud. […]

Analyzing Solorigate, the compromised DLL file that started a sophisticated cyberattack, and how Microsoft Defender helps protect customers

Analyzing Solorigate, the compromised DLL file that started a sophisticated cyberattack, and how Microsoft Defender helps protect customers https://ift.tt/3hd7bCp We, along with the security industry and our partners, continue to investigate the extent of the Solorigate attack. While investigations are underway, we want to provide the defender community with intelligence to understand the scope, impact, […]

Security baseline (FINAL) for Windows 10 and Windows Server, version 20H2

Security baseline (FINAL) for Windows 10 and Windows Server, version 20H2 https://ift.tt/3mpQ3tP We are pleased to announce the final release of the for Windows 10 and Windows Server, version 20H2 (a.k.a. October 2020 Update) security baseline package!   Please download the content from the Microsoft Security Compliance Toolkit, test the recommended configurations, and customize and implement […]

Windows Lock Screen Security Feature Bypass Vulnerability (Important, CVE-2020-17099, CVSSv3 6.8/5.9)

Windows Lock Screen Security Feature Bypass Vulnerability (Important, CVE-2020-17099, CVSSv3 6.8/5.9) https://ift.tt/36VPxzp Yesterday, for its December 2020 Patch Tuesday, Microsoft released an important security update addressing a Windows Lock Screen Security Feature Bypass Vulnerability .   About the vulnerability An authenticated user has signed into a device and locks his or her active session. An […]

FireEye and partners release SolarWinds kill-switch

FireEye and partners release SolarWinds kill-switch https://ift.tt/3airWLc FireEye and partners GoDaddy and Microsoft have deployed a so-called kill-switch against the SolarWinds Sunburst/Solarigate malware used by a state-backed actor to compromise multiple US government departments and FireEye, mitigating some of the potential impact of the wide-ranging attack. The cyber attack saw the compromise of SolarWinds’ network […]