The PortalFuse Microsoft Intune and Security Report Podcast
๐๏ธ Welcome to the Microsoft Intune and Security Report Podcast๐๏ธ โ your essential stop for the latest in Windows and Edge security! This podcast is designed to be a time-saving powerhouse, distilling the most critical updates, new features, and emerging vulnerabilities from multiple trusted sources into one convenient, ready-to-reference report. Each week, we dig deep into the data to give you a concise, actionable rundown on the security landscape, helping you stay one step ahead. So whether youโre managing enterprise security, overseeing IT operations, or just a tech enthusiast, our mission is to make it easy to stay informed, protected, and prepared. Additionally, we are featuring podcast episodes highlighting some of the cutting-edge developments with #Windows #Security and #Intune. Plug in, and letโs get into this weekโs highlights!
Episodes

Sunday Mar 23, 2025
Sunday Mar 23, 2025
๐จ Get ready to dive deep into the shadowy world of cybercrime! ๐ท๏ธ In this electrifying episode, we unravel the twisted connection between the notorious ALPHV/BlackCat ransomware gang ๐โโฌ and the sneaky Latrodectus malware loader! ๐ฅ
ย
Did you know these cyber baddies might be working together? Our investigation, drawing straight from the intel, reveals how Latrodectus, a sophisticated piece of malware also known as BlackWidow, could be opening doors for ALPHV/BlackCat to wreak havoc! ๐ช
ย
We'll explore:
โข The lowdown on ALPHV/BlackCat, the ransomware-as-a-service (RaaS) group with ties to infamous predecessors like BlackMatter and REvil. Their Rust-based ransomware is fast, flexible, and tough to detect.
ย
โข The nitty-gritty of Latrodectus, the malware loader developed by the Lunar Spider group โ the same crew behind the IcedID banking trojan! ๐ท๏ธ This loader is designed to sneak into systems and drop other malicious payloads.
ย
โขย The shocking link: Evidence suggests that Lunar Spider, the developers of Latrodectus, has connections with ALPHV/BlackCat! Could Latrodectus be the key that unlocks the door for ALPHV/BlackCat's ransomware attacks?ย Our previous conversation highlighted this collaborative relationship, where LUNAR SPIDER acts as an initial access broker, potentially using Latrodectus to pave the way for ALPHV/BlackCat's ransomware deployments [Our Conversation History].
ย
Tune in to uncover the intricate web connecting these cyber threats and learn why understanding their relationship is crucial for staying safe in the digital landscape!
ย
๐ง Don't miss out on this thrilling cybersecurity exposรฉ! ๐ฅ
ย
Also, see our briefing document over here: https://portalfuse.io/blog/detailed-briefing-document-alphv-blackcat-latrodectus-and-associated-threat-actors

Tuesday Mar 18, 2025
Tuesday Mar 18, 2025
๐ฑ๐ป Spring into Cybersecurity: Critical Edge Updates & USB Printer Glitches! ๐ง๐
As we shake off the winter blues and dive into the fresh energy of spring ๐ธ, it's time to refresh not just our surroundings but also our digital defenses! ๐ This week, weโre tackling urgent Microsoft Edge security updates ๐ก๏ธ and a pesky USB printer issue thatโs causing some chaotic printouts. ๐จ๏ธ๐ฅ
๐น Microsoft Edge Alert! ๐จA fresh security update is here! Microsoft Edge v134.0.3124.62 patches multiple vulnerabilities, including:โ ๏ธ Out-of-Bounds Write (CVE-2025-24201) โ Actively exploited! ๐โ ๏ธ Type Confusion Bugs (CVE-2025-2135, CVE-2025-1920) โ Risk of arbitrary code execution! ๐ดโโ ๏ธโ ๏ธ Use After Free (CVE-2025-2136) โ A dangerous Inspector component flaw! ๐
๐ข Update ASAP! Delaying puts your system at risk! ๐
๐จ๏ธ USB Printer Chaos! ๐คฏEver seen your printer spew out random gibberish, starting with "POST /ipp/print HTTP/1.1"? Yeah, itโs a thing now! ๐๐ After the latest Windows update, dual-mode USB printers are misbehaving. Microsoft has issued a Known Issue Rollback (KIR) to ease the pain, but IT admins, keep an eye out for a permanent fix coming soon! ๐
๐ง Stay Secure on the Go! ๐Tap into our weekly security podcast for expert analysis and the latest Microsoft security updates! ๐๏ธ๐ก Plus, join the conversation on r/PortalFuse to chat with fellow IT pros and security enthusiasts.
๐ Full PortalFuse Weekly Report โ PortalFuse Weekly Security Update Report - (Windows and Edge Edition)
๐ก Stay updated, stay secure, and keep your tech in check! ๐โจ#MSIntune #Windows11 #WUfB

Tuesday Mar 18, 2025
Tuesday Mar 18, 2025
๐ข Get ready, IT aficionados! ๐ปโ๏ธ Welcome back to the podcast, where we delve into the future of device management. Today, we're taking a sneak peek into the crystal ball ๐ฎ, specifically at the exciting updates coming to Microsoft Intune in March 2025.
We've got two major announcements that are going to make your lives easier and your device fleet more secure. First up, for all you managing modern Windows devices, especially those sleek ARM64 machines ๐ฑ, get ready! Endpoint Privilege Management (EPM) is expanding its horizons to support ARM 64-bit architectures. That means you'll soon be able to manage file elevations on even more of your devices, building upon the existing compatibility with 64-bit operating systems. This is a big win for broader EPM adoption!
But wait, there's more! ๐ค We're also seeing the dawn of a new era in device querying with the introduction of the Copilot assistant for device query. Imagine being able to ask plain English questions ๐ค and having Copilot generate those complex Kusto Query Language (KQL) queries for you to retrieve data from single or multiple devices! Whether you want to know which devices haven't been encrypted or see the top memory-hogging processes on a specific machine, Copilot is here to help. You can even see how Copilot generated the query, offering a fantastic learning opportunity!
So, buckle up! ๐ We're about to dive deeper into these game-changing features outlined in the "Intune: March 2025 Feature Briefing - EPM & Copilot" and the "What is new in intune for the Week of March 17, 2025". Get ready to enhance your understanding of Intune's future and how these updates, expected around the week of March 17, 2025, will revolutionize your Windows device management experience.
#MSIntune #Windows11

Tuesday Mar 18, 2025
Tuesday Mar 18, 2025
๐จ New cyber threat alert! ๐จ
Dive into the murky world of StilachiRAT, a novel and sophisticated Remote Access Trojan (RAT) uncovered by Microsoft researchers ๐ต๏ธโโ๏ธ. This isn't your run-of-the-mill malware; StilachiRAT has its sights set on your digital wallets ๐ฐ and personal data ๐พ.
In this episode, we unpack the inner workings of this stealthy RAT, exploring its arsenal of techniques:
โข System reconnaissance: Learn how StilachiRAT meticulously profiles infected systems, gathering everything from OS details to camera presence ๐ธ.โข Cryptocurrency theft: Discover its laser focus on 20 different cryptocurrency wallet extensions for Chrome, including MetaMask and Trust Wallet ๐ฆ, and how it sniffs out those precious crypto keys from your clipboard and files ๐.โข Credential theft: Find out how it swipes your saved browser passwords ๐คซ.โข Persistence mechanisms: We'll reveal how StilachiRAT digs in its heels, using sneaky methods to ensure it stays on your system, even if you try to remove it โณ.โข Evasion tactics: Uncover the anti-forensic tricks this RAT uses to hide from security software and analysts, including clearing event logs and obfuscating its code ๐ป.โข Command and Control (C2): Understand how it communicates with its masters using common ports, even delaying its initial contact to avoid detection ๐.While not yet widespread, StilachiRAT's advanced capabilities make it a significant threat, especially for cryptocurrency users. We'll also discuss mitigation strategies recommended by Microsoft to help you protect yourself.
ย
Briefing Document: StilachiRAT Malware Analysis | Blog | PortalFuse
ย
Stay informed, stay safe! ๐ก๏ธ #cybersecurity #malware #crypto #StilachiRAT

Wednesday Mar 12, 2025
Wednesday Mar 12, 2025
In this episode, we dive deep into the March 2025 Patch Tuesday updates, covering critical security vulnerabilities in Windows and Microsoft Edge. From remote code execution (RCE) threats to elevation of privilege (EoP) exploits, these updates are essential for IT admins, security professionals, and system administrators to keep their environments protected.
๐ Key Topics Covered: โ
RCE vulnerabilities allowing external attackers to take controlโ
EoP flaws that can grant unauthorized system-level accessโ
Denial of Service (DoS), Spoofing, and Information Disclosure risksโ
Microsoft Edge Chromium-based security patchesโ
Essential security updates and mitigation strategies
๐ Don't leave your systems vulnerable! Stay ahead of cyber threats by applying these patches ASAP.
๐ง Tune in now to get the full breakdown and expert analysis! ๐๐ป #CyberSecurity #WUfB

Tuesday Mar 11, 2025
Tuesday Mar 11, 2025
๐ก New Update Substate in Feature Updates Report!๐น A new "Not supported" substate has been added! ๐ This helps admins identify devices with Active Directory issues that might block updates.
๐ Where to Learn More?๐ Microsoft Learn has a deep dive into Windows Update for Business reports and how to configure them in Intune! ๐
๐ Understanding Data Sources for Windows Update for Business Reports๐น Service-based Data โก โ Collected automatically from Windows Update, appearing in less than an hour.๐น Client-based Data ๐ โ Requires configuration in Intune and refreshes every 8 hours.
โณ How Fast is Data Available?โฑ๏ธ Service-based Data โ Instant updates on registration issues & update status.โฑ๏ธ Client-based Data โ Tracks feature update progress, including disk space issues.
โ๏ธ Do You Need to Enable These?โ
Service-based Data โ No action needed! ๐ก Itโs automatic.โ
Client-based Data โ Needs Intune policies set up to send device data.
๐ ๏ธ Whatโs in Client-based Data?๐ Tracks update progress, installation steps, and issues like disk space problems! Perfect for troubleshooting.
๐ง Stay ahead with the latest Intune updates! ๐ Subscribe now to keep your devices up to date! ๐๐

Saturday Mar 01, 2025
Saturday Mar 01, 2025
๐ Intune Update Bonanza: Exciting New Features Unveiled for February 24, 2025 ๐
Welcome to this week's episode where we dive into the latest updates in Microsoft Intune! ๐งโจ Get ready for a comprehensive overview of the exciting new features, including:
๐ Improvements for managing Apple devices๐ฑ Groundbreaking QR code authentication for Managed Home Screen on Android๐ค Granular control over Windows AI settings that prioritize data privacy ๐
๐ Stay tuned as we explore the enhanced security measures, such as:๐ก๏ธ New settings for Microsoft Defender device control on Windows๐ Anticipated update to the Intune connector for Active Directory
These updates aim to balance user control, security, and convenience โ๏ธ, helping IT admins stay ahead in the ever-evolving tech landscape. ๐๐ก
Resources:Frequently Asked Questions about Microsoft Intune Updates (Week of February 24, 2025) | Blog | PortalFuse

Wednesday Feb 26, 2025
Wednesday Feb 26, 2025
Welcome, IT pros and system admins! ๐ In this episode, we dive deep into the latest Windows and Microsoft Edge security updates, ensuring you stay ahead of emerging threats. ๐ก๏ธ
๐น Microsoft Edge Vulnerabilities ๐โ ๏ธ
CVE-2025-21401 โ Security Bypass ๐
CVE-2025-1426 โ Use After Free ๐ง
CVE-2025-1006 โ Heap Buffer Overflow in GPU ๐ฎ
CVE-2025-0999 โ Heap Buffer Overflow in V8 ๐ง
๐ Windows 10 & 11 Updates ๐
KB5052077 (Windows 10) โ Performance & reliability boosts ๐
KB5053143 (Windows 11) โ Recovery environment improvements ๐ ๏ธ
KB5052094 (Windows 11) โ Taskbar, Spotlight, and accessibility fixes ๐จ
โ ๏ธ Known Issues & Workarounds ๐
Citrix compatibility issue ๐ฅ๏ธ
System Guard Runtime Monitor Broker error ๐
๐ Stay updated, secure your systems, and optimize performance! Subscribe now for weekly insights! ๐งโ
#Windows11 #Intune #WUfB ๐

Friday Feb 21, 2025
Friday Feb 21, 2025
Welcome to this weekโs episode of the PortalFuse Deep Dive, where weโre diving into a game-changer for Windows updates: Windows Hotpatching! ๐
๐ Tired of Reboots? Weโve got the solution! Microsoftโs Hotpatching lets you install critical security updates without restarting your system! No more downtime, no more interruptionsโjust smooth, seamless patching! ๐ก๐ป
๐ Whatโs in this episode?โ
How Hotpatching works (magic? Almost! ๐ช)โ
Why itโs a big deal for IT admins & enterprises ๐ข๐งโ
How it saves time, improves security, and boosts uptime ๐
๐ The Future of Windows Updates is Here! ๐We explore how Hotpatching is shaping the future of Windows 11 management and speculate whatโs next for Windows servicing!
๐ง Tune in now and stay ahead of the curve in IT! Letโs talk tech without the reboot headache! ๐โก
#Windows11 #Hotpatch #Intune #WUfB ๐ค๐ฌ

Wednesday Feb 19, 2025
Wednesday Feb 19, 2025
In this episode of the PortalFuse Security Podcast, we dive into the latest security developments from our February 18, 2025, Weekly Security Report ๐ฐ. Stay ahead of the curve as we break down the most critical threats, vulnerabilities, and security updates affecting Windows, Microsoft Edge, and enterprise environments ๐ข๐ป.
ย
๐ Key Topics This Week:๐จ Windows Kernel Vulnerabilities โ How newly discovered flaws could be exploited and what you can do to stay protected.๐ก๏ธ Zero-Day Exploits in Edge Chromium โ Attackers are actively targeting this browserโfind out how to safeguard your organization.โ๏ธ Microsoftโs Latest Security Patches โ A deep dive into the latest updates and how they mitigate recent threats.๐ Emerging Cyber Threats & Attack Trends โ Understanding the evolving tactics of cybercriminals and how to counter them.
Weโll also share real-world insights ๐ on how these vulnerabilities impact businesses and provide actionable security recommendations ๐ to help IT professionals, security teams, and organizations strengthen their defenses ๐ฐ.
Whether you're an IT admin, a security analyst, or just passionate about cybersecurity, this episode is packed with critical information to keep you one step ahead of cyber threats! ๐
๐ง Tune in now and stay secure! ๐๐