❌

Reading view

There are new articles available, click to refresh the page.

When was the start of the security industry?

What do you think was the official start of the security industry? Some will say it was when the Morris Worm hit in November 1988.Β  It started people thinking more about firewalls and a vulnerability disclosure process. The official start of the AI security industry?Β  Hugging Face and the resulting fallout. We’re still coming to […]

MS-DEFCON 2: Guiding you in for a landing

ISSUE 23.38.1 β€’ 2026-09-22 By Susan Bradley What. A. Mess. Remember that scene at the end of the second Die Hard movie? You know β€” the one where terrorists have taken over the air-traffic control system, there’s a swirling winter storm, the circling planes are all running out of fuel, and our hero is just […]

By the time you read this

A ton of tiny packages will be enroute to their final destination. If you’ve ever tracked β€œevent shipments,” it’s actually sort of geeky/interesting on the logistics of getting things from here to there. In this case, many of the USA based shipments of iPhones will go through the FedEx hub enroute to their final destinations. […]

Should we patch faster?

ISSUE 23.37 β€’ 2026-09-14 PATCH WATCH By Susan Bradley Is AI pushing us to patch faster? Recently, I sat down with Richard Campbell of the RunAsRadio podcast to talk about patching, security, and whether we should patch faster just because of AI. I made the point that vulnerability counts do not equate to exploitation. The […]

Bugs do not equate with exploits

PATCH WATCH By Susan Bradley Do you want large or small bug counts? Microsoft released the September updates with 12 Azure vulnerabilities, 22 developer-tool vulnerabilities, 9 Exchange server vulnerabilities, 111 Office vulnerabilities, 16 SharePoint server vulnerabilities, 10 Skype for business vulnerabilities, 62 SQL vulnerabilities, 9 β€œother” vulnerabilities, and β€” last but not least β€” 723 […]

Master Patch List for September 2026

I’ve updated the master patch list here.Β Β Please note I am not recommending installing updates at this time, we are just testing and reporting. I’ll be updating that page and monitoring for issues. So far the trending issues are: RDS servers having issues after the September updates. If you run an RDS farm, hold back. I […]

It folds the wrong way

The early reviews from the geeks in the office is that the new foldableΒ  iPhone Duo folds the wrong way. I’m seeing mixed reviews online from today’s announcements at the Apple event. Having a mini folding iPad wasn’t our geeks idea of a great device design, especially because it won’t sit well on their charging […]

MS-DEFCON 2: Defer those previews

ISSUE 23.35.2 β€’ 2026-09-03 By Susan Bradley Clouds can break, and previews are betas. With the move to the cloud, too often we inadvertently become beta testers. Just the other day, Microsoft 365 had authentication issues and was down for some users for most of the day. Microsoft kept us informed on the admin console […]

VPNs hide trackers

The saying goes … if you download something for free, you are the product.Β  I have long said that not all VPNs are the same and we do not all need to use VPNs β€” especially on mobile devices. So, it’s not surprising to see that Proton VPN found that 85% of downloaded VPN apps […]

Push off Passkeys

ISSUE 23.35.1 β€’ 2026-09-01 By Susan Bradley Defer the Passkeys mandate for 365. Today, Microsoft begins its official effort to move Microsoft 365 customers from traditional authentication to what it calls β€œphishing-resistant” methods. This means Windows Hello, passkeys, or similar multifactor authentication (MFA) methods that are more secure. For consumers using 365, this will probably […]

End-of-summer wrap-up

TAME YOUR TECH End-of-summer wrap-up By Susan Bradley Are you ready for 26H2 and new Apple devices? The end of August has always been a time for me to stop, reflect on the summer, determine if I got anything on my summertime to-do list done, and see whether I’m ready for fall. When I was […]

MS-DEFCON 3: Side effects for some β€” but not all

ISSUE 23.34.1 β€’ 2026-08-25 By Susan Bradley I am lowering the MS-DEFCON level, but only to 3. August updates have proven themselves to be less than clean. Generally speaking, none of the issues is widespread. They depend upon whether you have specific hardware or are using specific software. And some problems have been reported only […]

Keeping the threats at the edge

ISSUE 23.34 β€’ 2026-08-24 ON SECURITY By Susan Bradley It all started when I was assisting someone who was trying to determine whether their Wi-Fi mesh routers were operating at the best possible speed. I tried to log in to the Web-based interface to the mesh system, which indicated that browser access was disabled. Uh-oh. […]

Your device is severely damaged

Was searching on a topic on my phone today and hit this. There is a reason that Apple has moved to a twice a month patching schedule. The Microsoft Threat Intelligence team indicates that it is β€œmonitoring the active exploitation of the CVE-2026-65400 improper authentication vulnerability on a limited number of macOS devices, with telemetry […]
❌