The PortalFuse Microsoft Intune and Security Report Podcast

๐ŸŽ™๏ธ Welcome to the Microsoft Intune and Security Report Podcast๐ŸŽ™๏ธ โ€” your essential stop for the latest in Windows and Edge security! This podcast is designed to be a time-saving powerhouse, distilling the most critical updates, new features, and emerging vulnerabilities from multiple trusted sources into one convenient, ready-to-reference report. Each week, we dig deep into the data to give you a concise, actionable rundown on the security landscape, helping you stay one step ahead. So whether youโ€™re managing enterprise security, overseeing IT operations, or just a tech enthusiast, our mission is to make it easy to stay informed, protected, and prepared. Additionally, we are featuring podcast episodes highlighting some of the cutting-edge developments with #Windows #Security and #Intune. Plug in, and letโ€™s get into this weekโ€™s highlights!

Listen on:

  • Podbean App
  • Spotify
  • Amazon Music
  • iHeartRadio
  • PlayerFM

Episodes

Sunday Mar 23, 2025

๐Ÿšจ Get ready to dive deep into the shadowy world of cybercrime! ๐Ÿ•ท๏ธ In this electrifying episode, we unravel the twisted connection between the notorious ALPHV/BlackCat ransomware gang ๐Ÿˆโ€โฌ› and the sneaky Latrodectus malware loader! ๐Ÿ’ฅ
ย 
Did you know these cyber baddies might be working together? Our investigation, drawing straight from the intel, reveals how Latrodectus, a sophisticated piece of malware also known as BlackWidow, could be opening doors for ALPHV/BlackCat to wreak havoc! ๐Ÿšช
ย 
We'll explore:
โ€ข The lowdown on ALPHV/BlackCat, the ransomware-as-a-service (RaaS) group with ties to infamous predecessors like BlackMatter and REvil. Their Rust-based ransomware is fast, flexible, and tough to detect.
ย 
โ€ข The nitty-gritty of Latrodectus, the malware loader developed by the Lunar Spider group โ€“ the same crew behind the IcedID banking trojan! ๐Ÿ•ท๏ธ This loader is designed to sneak into systems and drop other malicious payloads.
ย 
โ€ขย The shocking link: Evidence suggests that Lunar Spider, the developers of Latrodectus, has connections with ALPHV/BlackCat! Could Latrodectus be the key that unlocks the door for ALPHV/BlackCat's ransomware attacks?ย Our previous conversation highlighted this collaborative relationship, where LUNAR SPIDER acts as an initial access broker, potentially using Latrodectus to pave the way for ALPHV/BlackCat's ransomware deployments [Our Conversation History].
ย 
Tune in to uncover the intricate web connecting these cyber threats and learn why understanding their relationship is crucial for staying safe in the digital landscape!
ย 
๐ŸŽง Don't miss out on this thrilling cybersecurity exposรฉ! ๐Ÿ”ฅ
ย 
Also, see our briefing document over here: https://portalfuse.io/blog/detailed-briefing-document-alphv-blackcat-latrodectus-and-associated-threat-actors

Tuesday Mar 18, 2025

๐ŸŒฑ๐Ÿ’ป Spring into Cybersecurity: Critical Edge Updates & USB Printer Glitches! ๐ŸŽง๐Ÿ”’
As we shake off the winter blues and dive into the fresh energy of spring ๐ŸŒธ, it's time to refresh not just our surroundings but also our digital defenses! ๐Ÿš€ This week, weโ€™re tackling urgent Microsoft Edge security updates ๐Ÿ›ก๏ธ and a pesky USB printer issue thatโ€™s causing some chaotic printouts. ๐Ÿ–จ๏ธ๐Ÿ’ฅ
๐Ÿ”น Microsoft Edge Alert! ๐ŸšจA fresh security update is here! Microsoft Edge v134.0.3124.62 patches multiple vulnerabilities, including:โš ๏ธ Out-of-Bounds Write (CVE-2025-24201) โ€“ Actively exploited! ๐Ÿ›‘โš ๏ธ Type Confusion Bugs (CVE-2025-2135, CVE-2025-1920) โ€“ Risk of arbitrary code execution! ๐Ÿดโ€โ˜ ๏ธโš ๏ธ Use After Free (CVE-2025-2136) โ€“ A dangerous Inspector component flaw! ๐Ÿ”Ž
๐Ÿ“ข Update ASAP! Delaying puts your system at risk! ๐Ÿš€
๐Ÿ–จ๏ธ USB Printer Chaos! ๐ŸคฏEver seen your printer spew out random gibberish, starting with "POST /ipp/print HTTP/1.1"? Yeah, itโ€™s a thing now! ๐Ÿ™„๐Ÿ’€ After the latest Windows update, dual-mode USB printers are misbehaving. Microsoft has issued a Known Issue Rollback (KIR) to ease the pain, but IT admins, keep an eye out for a permanent fix coming soon! ๐Ÿ”„
๐ŸŽง Stay Secure on the Go! ๐Ÿš€Tap into our weekly security podcast for expert analysis and the latest Microsoft security updates! ๐ŸŽ™๏ธ๐Ÿ’ก Plus, join the conversation on r/PortalFuse to chat with fellow IT pros and security enthusiasts.
๐Ÿ”— Full PortalFuse Weekly Report โ†’ PortalFuse Weekly Security Update Report - (Windows and Edge Edition)
๐Ÿ’ก Stay updated, stay secure, and keep your tech in check! ๐Ÿ”โœจ#MSIntune #Windows11 #WUfB

Tuesday Mar 18, 2025

๐Ÿ“ข Get ready, IT aficionados! ๐Ÿ’ปโš™๏ธ Welcome back to the podcast, where we delve into the future of device management. Today, we're taking a sneak peek into the crystal ball ๐Ÿ”ฎ, specifically at the exciting updates coming to Microsoft Intune in March 2025.
We've got two major announcements that are going to make your lives easier and your device fleet more secure. First up, for all you managing modern Windows devices, especially those sleek ARM64 machines ๐Ÿ“ฑ, get ready! Endpoint Privilege Management (EPM) is expanding its horizons to support ARM 64-bit architectures. That means you'll soon be able to manage file elevations on even more of your devices, building upon the existing compatibility with 64-bit operating systems. This is a big win for broader EPM adoption!
But wait, there's more! ๐Ÿค– We're also seeing the dawn of a new era in device querying with the introduction of the Copilot assistant for device query. Imagine being able to ask plain English questions ๐Ÿค” and having Copilot generate those complex Kusto Query Language (KQL) queries for you to retrieve data from single or multiple devices! Whether you want to know which devices haven't been encrypted or see the top memory-hogging processes on a specific machine, Copilot is here to help. You can even see how Copilot generated the query, offering a fantastic learning opportunity!
So, buckle up! ๐Ÿš€ We're about to dive deeper into these game-changing features outlined in the "Intune: March 2025 Feature Briefing - EPM & Copilot" and the "What is new in intune for the Week of March 17, 2025". Get ready to enhance your understanding of Intune's future and how these updates, expected around the week of March 17, 2025, will revolutionize your Windows device management experience.
#MSIntune #Windows11

Tuesday Mar 18, 2025

๐Ÿšจ New cyber threat alert! ๐Ÿšจ
Dive into the murky world of StilachiRAT, a novel and sophisticated Remote Access Trojan (RAT) uncovered by Microsoft researchers ๐Ÿ•ต๏ธโ€โ™‚๏ธ. This isn't your run-of-the-mill malware; StilachiRAT has its sights set on your digital wallets ๐Ÿ’ฐ and personal data ๐Ÿ’พ.
In this episode, we unpack the inner workings of this stealthy RAT, exploring its arsenal of techniques:
โ€ข System reconnaissance: Learn how StilachiRAT meticulously profiles infected systems, gathering everything from OS details to camera presence ๐Ÿ“ธ.โ€ข Cryptocurrency theft: Discover its laser focus on 20 different cryptocurrency wallet extensions for Chrome, including MetaMask and Trust Wallet ๐ŸฆŠ, and how it sniffs out those precious crypto keys from your clipboard and files ๐Ÿ”‘.โ€ข Credential theft: Find out how it swipes your saved browser passwords ๐Ÿคซ.โ€ข Persistence mechanisms: We'll reveal how StilachiRAT digs in its heels, using sneaky methods to ensure it stays on your system, even if you try to remove it โณ.โ€ข Evasion tactics: Uncover the anti-forensic tricks this RAT uses to hide from security software and analysts, including clearing event logs and obfuscating its code ๐Ÿ‘ป.โ€ข Command and Control (C2): Understand how it communicates with its masters using common ports, even delaying its initial contact to avoid detection ๐Ÿ“ž.While not yet widespread, StilachiRAT's advanced capabilities make it a significant threat, especially for cryptocurrency users. We'll also discuss mitigation strategies recommended by Microsoft to help you protect yourself.
ย 
Briefing Document: StilachiRAT Malware Analysis | Blog | PortalFuse
ย 
Stay informed, stay safe! ๐Ÿ›ก๏ธ #cybersecurity #malware #crypto #StilachiRAT

Wednesday Mar 12, 2025

In this episode, we dive deep into the March 2025 Patch Tuesday updates, covering critical security vulnerabilities in Windows and Microsoft Edge. From remote code execution (RCE) threats to elevation of privilege (EoP) exploits, these updates are essential for IT admins, security professionals, and system administrators to keep their environments protected.
๐Ÿš€ Key Topics Covered: โœ… RCE vulnerabilities allowing external attackers to take controlโœ… EoP flaws that can grant unauthorized system-level accessโœ… Denial of Service (DoS), Spoofing, and Information Disclosure risksโœ… Microsoft Edge Chromium-based security patchesโœ… Essential security updates and mitigation strategies
๐Ÿ›‘ Don't leave your systems vulnerable! Stay ahead of cyber threats by applying these patches ASAP.
๐ŸŽง Tune in now to get the full breakdown and expert analysis! ๐Ÿ”Š๐Ÿ’ป #CyberSecurity #WUfB

Tuesday Mar 11, 2025

๐Ÿ’ก New Update Substate in Feature Updates Report!๐Ÿ”น A new "Not supported" substate has been added! ๐Ÿ†• This helps admins identify devices with Active Directory issues that might block updates.
๐Ÿ“– Where to Learn More?๐Ÿ”— Microsoft Learn has a deep dive into Windows Update for Business reports and how to configure them in Intune! ๐Ÿ“š
๐Ÿ“Š Understanding Data Sources for Windows Update for Business Reports๐Ÿ”น Service-based Data โšก โ€“ Collected automatically from Windows Update, appearing in less than an hour.๐Ÿ”น Client-based Data ๐Ÿ”„ โ€“ Requires configuration in Intune and refreshes every 8 hours.
โณ How Fast is Data Available?โฑ๏ธ Service-based Data โ€“ Instant updates on registration issues & update status.โฑ๏ธ Client-based Data โ€“ Tracks feature update progress, including disk space issues.
โš™๏ธ Do You Need to Enable These?โœ… Service-based Data โ€“ No action needed! ๐Ÿ“ก Itโ€™s automatic.โœ… Client-based Data โ€“ Needs Intune policies set up to send device data.
๐Ÿ› ๏ธ Whatโ€™s in Client-based Data?๐Ÿ” Tracks update progress, installation steps, and issues like disk space problems! Perfect for troubleshooting.
๐ŸŽง Stay ahead with the latest Intune updates! ๐Ÿš€ Subscribe now to keep your devices up to date! ๐Ÿ”—๐Ÿ”Š

Saturday Mar 01, 2025

๐Ÿš€ Intune Update Bonanza: Exciting New Features Unveiled for February 24, 2025 ๐ŸŽ‰
Welcome to this week's episode where we dive into the latest updates in Microsoft Intune! ๐ŸŽงโœจ Get ready for a comprehensive overview of the exciting new features, including:
๐Ÿ Improvements for managing Apple devices๐Ÿ“ฑ Groundbreaking QR code authentication for Managed Home Screen on Android๐Ÿค– Granular control over Windows AI settings that prioritize data privacy ๐Ÿ”
๐Ÿ” Stay tuned as we explore the enhanced security measures, such as:๐Ÿ›ก๏ธ New settings for Microsoft Defender device control on Windows๐Ÿ”— Anticipated update to the Intune connector for Active Directory
These updates aim to balance user control, security, and convenience โš–๏ธ, helping IT admins stay ahead in the ever-evolving tech landscape. ๐ŸŒ๐Ÿ’ก
Resources:Frequently Asked Questions about Microsoft Intune Updates (Week of February 24, 2025) | Blog | PortalFuse

Wednesday Feb 26, 2025

Welcome, IT pros and system admins! ๐Ÿš€ In this episode, we dive deep into the latest Windows and Microsoft Edge security updates, ensuring you stay ahead of emerging threats. ๐Ÿ›ก๏ธ
๐Ÿ”น Microsoft Edge Vulnerabilities ๐ŸŒโš ๏ธ
CVE-2025-21401 โ€“ Security Bypass ๐Ÿ›‘
CVE-2025-1426 โ€“ Use After Free ๐Ÿ–ง
CVE-2025-1006 โ€“ Heap Buffer Overflow in GPU ๐ŸŽฎ
CVE-2025-0999 โ€“ Heap Buffer Overflow in V8 ๐Ÿง 
๐Ÿ“Œ Windows 10 & 11 Updates ๐Ÿ†
KB5052077 (Windows 10) โ€“ Performance & reliability boosts ๐Ÿš€
KB5053143 (Windows 11) โ€“ Recovery environment improvements ๐Ÿ› ๏ธ
KB5052094 (Windows 11) โ€“ Taskbar, Spotlight, and accessibility fixes ๐ŸŽจ
โš ๏ธ Known Issues & Workarounds ๐Ÿ›‘
Citrix compatibility issue ๐Ÿ–ฅ๏ธ
System Guard Runtime Monitor Broker error ๐Ÿ“
๐Ÿ”‘ Stay updated, secure your systems, and optimize performance! Subscribe now for weekly insights! ๐ŸŽงโœ…
#Windows11 #Intune #WUfB ๐Ÿš€

Friday Feb 21, 2025

Welcome to this weekโ€™s episode of the PortalFuse Deep Dive, where weโ€™re diving into a game-changer for Windows updates: Windows Hotpatching! ๐ŸŽ‰
๐Ÿ‘‰ Tired of Reboots? Weโ€™ve got the solution! Microsoftโ€™s Hotpatching lets you install critical security updates without restarting your system! No more downtime, no more interruptionsโ€”just smooth, seamless patching! ๐Ÿ’ก๐Ÿ’ป
๐Ÿ”Ž Whatโ€™s in this episode?โœ… How Hotpatching works (magic? Almost! ๐Ÿช„)โœ… Why itโ€™s a big deal for IT admins & enterprises ๐Ÿข๐Ÿ”งโœ… How it saves time, improves security, and boosts uptime ๐Ÿš€
๐ŸŒŸ The Future of Windows Updates is Here! ๐ŸŒŸWe explore how Hotpatching is shaping the future of Windows 11 management and speculate whatโ€™s next for Windows servicing!
๐ŸŽง Tune in now and stay ahead of the curve in IT! Letโ€™s talk tech without the reboot headache! ๐Ÿ˜Žโšก
#Windows11 #Hotpatch #Intune #WUfB ๐ŸŽค๐ŸŽฌ

Wednesday Feb 19, 2025

In this episode of the PortalFuse Security Podcast, we dive into the latest security developments from our February 18, 2025, Weekly Security Report ๐Ÿ“ฐ. Stay ahead of the curve as we break down the most critical threats, vulnerabilities, and security updates affecting Windows, Microsoft Edge, and enterprise environments ๐Ÿข๐Ÿ’ป.
ย 
๐Ÿ”Ž Key Topics This Week:๐Ÿšจ Windows Kernel Vulnerabilities โ€“ How newly discovered flaws could be exploited and what you can do to stay protected.๐Ÿ›ก๏ธ Zero-Day Exploits in Edge Chromium โ€“ Attackers are actively targeting this browserโ€”find out how to safeguard your organization.โš™๏ธ Microsoftโ€™s Latest Security Patches โ€“ A deep dive into the latest updates and how they mitigate recent threats.๐Ÿš€ Emerging Cyber Threats & Attack Trends โ€“ Understanding the evolving tactics of cybercriminals and how to counter them.
Weโ€™ll also share real-world insights ๐ŸŒ on how these vulnerabilities impact businesses and provide actionable security recommendations ๐Ÿ”‘ to help IT professionals, security teams, and organizations strengthen their defenses ๐Ÿฐ.
Whether you're an IT admin, a security analyst, or just passionate about cybersecurity, this episode is packed with critical information to keep you one step ahead of cyber threats! ๐Ÿ†
๐ŸŽง Tune in now and stay secure! ๐Ÿ”—๐Ÿ’™

Copyright 2024 All rights reserved.

Podcast Powered By Podbean

Version: 20241125