Author: myITforum News

Microsoft Azure Active Directory Connect Update Fixes Security Vulnerability

You might have noticed on Microsoft’s download site that Azure Active Directory Connect received an update, but unless you were also reading through this month’s security announcements you may have missed the reason for the update. Microsoft Azure Active Directory Connect has a severe elevation of privilege vulnerability for which there is no mitigation nor workaround other than just i...

Microsoft Attack Surface Analyzer Gets a Long Overdue Version Bump, Adds Supported Platforms

The first version of the Attack Surface Analyzer was released way back in 2012, so it was due for a big update. The new version (2.0), supports Windows, Linux, and macOS and is also now available as an open source project on GitHub. ASA 2.0 scans to detect changes in the following items: File System User Accounts System Services Network Ports (listeners) System Certificate Stores Windows Registry ...

Addressing the Disclosed MDS Vulnerability for Azure VMs

A recently disclosed vulnerability affects many modern processors and operating systems including Intel, AMD, and ARM. Referred to as “speculative execution side-channel attacks,” this serious vulnerability can allow attackers to read privileged data across trust boundaries. Microsoft Azure platforms are fully protected and mitigation has already been deployed. However, customers manag...

Microsoft Cracks the Azure AD Password Character Barrier

Microsoft cloud-based AD schema and identity technology has come closer to matching its on-premises counterpart. The company has now officially removed the 16 character password limit for Azure AD. From Azure PM, Alex Simons… Many of you have been reminding us that we still have a 16-character password limit for accounts created in Azure AD. While our on-premises Windows AD allows longer pas...

Microsoft Patches Severe Bug in Remote Desktop Services

One of the more critical security holes that Microsoft is patching this month is one in its Remote Desktop Services. Today Microsoft released fixes for a critical Remote Code Execution vulnerability, CVE-2019-0708, in Remote Desktop Services – formerly known as Terminal Services – that affects some older versions of Windows. The Remote Desktop Protocol (RDP) itself is not vulnerable. This vulnerab...

What’s Old is New Again – PowerToys for Windows are Back, But with an Opensource Flair

Back in the day, PowerToys were all the rage for Windows users. PowerToys were a set of freeware system utilities for power users, that were actually developed by Microsoft. Yet…they weren’t vetted as strictly as “official” apps similar to how utilities and apps are being developed through Microsoft Garage efforts today. From the GitHub page: PowerToys is a set of utilities...

Office Update KB4462238 Causes Apps to Freeze When Clicking Hyperlinks

Microsoft rolled out its normal fare of first-Tuesday Office updates this week. However, one of those updates, KB4462238, causes problems. After this update is installed, clicking a hyperlink in an Office application, such as Word, PowerPoint, Excel, or Outlook, may cause the application to stop working.  Microsoft recommends uninstalling the update if the problem is experienced. Knowing Microsoft...

Non-security Microsoft Office Updates for May 2019 Now Available

Microsoft’s monthly updates for Office – the one’s that generally kick-off each month on the 1st Tuesday – are now available. These are updates for fixing bugs and adding features, and not necessarily to solve security woes. Here’s whats’s available now… Office 2010 Update for Microsoft Outlook 2010 KB4464524 Office 2013 Update for Microsoft Office 2013 KB...

Alexa for Windows 10 Gets Full Hands-free Mode

Prior to this latest update, Alexa hands-free mode only worked for certain devices and PC manufacturer models. But, this latest update brings hands-free capability to any PC running Windows 10. If you have the Alexa app for Windows 10 installed and the feature isn’t yet working, just go into the Windows Store and grab the update. If you haven’t installed the Alexa app for Windows 10, g...

Microsoft Now Allows Customers to Monitor Azure and AWS Costs in a Single Tool

Available now in preview, Azure Cost Management multi-cloud for AWS allows customers to manage AWS and Azure spend right in the same service. Features like cost analysis and budgets are available as part of this feature as well, helping simplify your cost management practice on multi-cloud scenarios. Start testing: Azure Cost Management Available to Microsoft Enterprise Agreement, Pay-As-You-Go, a...

Microsoft Adding MBAM Features to ConfigMgr and Intune

Announced at MMS 2019 at the Mall of America, System Center Configuration Manager and Intune will be getting MBAM features. #MMSMOA announcement: MBAM features will be added to #ConfigMgr and #Intune pic.twitter.com/kyAw7ms6PV — Octavian @ MMSMOA (@octav_cm) May 6, 2019 Microsoft BitLocker Administration and Monitoring (MBAM) 2.5 provides a simplified administrative interface for BitLocker Drive E...

Windows 10 1809 Gets Its Second Big Update in as Many Days

Microsoft today has rolled out a new update for Windows 10 1809. This update comes just two days after a May 1st release that, among other things, fixes bugs with Japanese language pieces. Here’s what’s new: May 3, 2019—KB4495667 (OS Build 17763.475) Allows the built-in Administrator account to run Microsoft Office setup after downloading the installer in Microsoft Edge. Addresses an i...