"Hey Dom, this link looks phishy." I was amazed when somebody actually noticed I was using a custom short linking tool on a social post. To be honest, my first reaction was a happy one. Somebody had looked before they clicked on a link where the preview very clearly...
Category: Cybersecurity
Windows 11 Gets Enhanced Phishing Protection
With the release of Windows 11 22H2, Microsoft has added Enhanced Phishing Protection to its operating system. This feature proactively warns users if they're putting their Windows password into an insecure application (such as Notepad or Word) or on websites. Windows...
NordLayer Review: Setup and First Thoughts
In July, Pax8 announced a new partnership with Nord Security. I was particularly excited about this launch due to their NordLayer product and the promise of a simple to use SASE service with capabilities like single sign on, private gateways/servers and site to site...
There’s Always Another Attack Vector
Microsoft recently made a big jump in the security of the Office suite by finally blocking macros by default! However, when we plug one hole, threat actors will simply find a new hole, and thus the cycle shall continue.
Have You Considered Adding SASE?
Now that the new normal is work from anywhere, we've got a major limitation on our hands: network protection. We can solve some of this with DNS filtering, which does indeed do an excellent job at web reputation protection. After all, the majority of the world's...
Dear Security Vendors: We Need to Talk
It's not us, it's you. We need to talk about marketing and how we should be presenting our products and services to newer practitioners in our space. For too long now, there's been this marketing trend of "100% protection." It's got to stop. The Truth About...
Conditional Access Templates are Coming in Hot
One of the bigger challenges with Conditional Access is baselining your security templates. As Microsoft so eloquently put it, Identity is the New Battleground, so we must set baselines everywhere. After much waiting, Microsoft is rolling out templatized, best...
Microsoft, Google, and Apple Agree on Passwordless
I never envisioned myself writing about these three companies agreeing, but here we are. And the news is fantastic. I've long been a proponent of passwordless authentication flows, which is really just a buzzword for relying on different factors such as biometrics and...