With Microsoft announcing Certificate Based Auth general availability, it's a fair question. Certificate Authentication is nothing new, native support for CBA in Azure AD is very new, and it's very easy to setup. You simply trust your certificate authority with Azure...
Category: Cybersecurity
What is domk.pro?
"Hey Dom, this link looks phishy." I was amazed when somebody actually noticed I was using a custom short linking tool on a social post. To be honest, my first reaction was a happy one. Somebody had looked before they clicked on a link where the preview very clearly...
Windows 11 Gets Enhanced Phishing Protection
With the release of Windows 11 22H2, Microsoft has added Enhanced Phishing Protection to its operating system. This feature proactively warns users if they're putting their Windows password into an insecure application (such as Notepad or Word) or on websites. Windows...
NordLayer Review: Setup and First Thoughts
In July, Pax8 announced a new partnership with Nord Security. I was particularly excited about this launch due to their NordLayer product and the promise of a simple to use SASE service with capabilities like single sign on, private gateways/servers and site to site...
There’s Always Another Attack Vector
Microsoft recently made a big jump in the security of the Office suite by finally blocking macros by default! However, when we plug one hole, threat actors will simply find a new hole, and thus the cycle shall continue.
Have You Considered Adding SASE?
Now that the new normal is work from anywhere, we've got a major limitation on our hands: network protection. We can solve some of this with DNS filtering, which does indeed do an excellent job at web reputation protection. After all, the majority of the world's...
Dear Security Vendors: We Need to Talk
It's not us, it's you. We need to talk about marketing and how we should be presenting our products and services to newer practitioners in our space. For too long now, there's been this marketing trend of "100% protection." It's got to stop. The Truth About...
Conditional Access Templates are Coming in Hot
One of the bigger challenges with Conditional Access is baselining your security templates. As Microsoft so eloquently put it, Identity is the New Battleground, so we must set baselines everywhere. After much waiting, Microsoft is rolling out templatized, best...