Apple secures WebKit as global ransomware attacks surge

If nothing else, Apple’s most recent emergency security update should be considered proof of an increasingly tense security environment.

Enterprises must understand that while Apple maintains a pretty solid ecosystem — certainly at present the most secure, even according to Cisco — that doesn’t mean it’s entirely safe, and every Apple customer needs to get wise to the growing proliferation of threats.

With more and more business users turning to the company’s solutions, it’s important to get ahead of the threat.

To read this article in full, please click here

Read more

Critical zero-day flaws in Windows, Office mean it's time to patch

We are now in the third decade of Microsoft’s monthly Patch Tuesday releases, which deliver fewer critical updates to browsers and Windows platforms — and much more reliable updates to Microsoft Office — than in the early days of patching. But this month, the company rolled out 63 updates (including fixes for three zero-days in Windows and Office).

Updates to Microsoft Exchange and Visual Studio can be included in standard patch release cycles, while Adobe needs to be included in your “Patch Now” releases for third-party applications. 

The team at Readiness has provided a detailed infographic that outlines the risks associated with each of the updates for November.

To read this article in full, please click here

Read more

Windows Hello for Business: Passwordless authentication for Windows shops

Microsoft is trying to get rid of that sticky note that you see taped to everyone’s office monitor. You know, the one with the password on it. The one with all of the old passwords crossed off one by one, each one subtly different from the last — an exclamation point turning into an ampersand, a one into a two.

Enterprises have really done this to themselves. The passwords that most organizations require — which have to be complex, with long strings of numbers and specially cased phrases with some (but not all! heavens no, not the one you want) symbols — are difficult to remember. There’s no hope except to write them down. Then you have to reset them every so often. Then they get recycled. And on and on the cycle goes.

To read this article in full, please click here

Read more

New Jamf CEO John Strosahl on Apple in the enterprise, Jamf's future

John Strosahl became Jamf CEO in September. He isn’t a new face and was one of the first employees then-incoming (now former) CEO Dean Hager hired eight years ago. Together, they managed the company’s transition into a leading Apple solution integrator across the enterprise, medical, and education industries.

I caught up with both men to talk about Apple’s growing place in the enterprise and Strosahl’s plans for the future of Jamf.

The culture thing

Mac admins like to say that Jamf has a unique company culture, which is particularly visible at the company’s public events.

To read this article in full, please click here

Read more

New Jamf CEO John Strosahl on Apple in the enterprise, Jami's future

John Strosahl became Jamf CEO in September. He isn’t a new face and was one of the first employees then-incoming (now former) CEO Dean Hager hired eight years ago. Together, they managed the company’s transition into a leading Apple solution integrator across the enterprise, medical, and education industries.

I caught up with both men to talk about Apple’s growing place in the enterprise and Strosahl’s plans for the future of Jamf.

The culture thing

Mac admins like to say that Jamf has a unique company culture, which is particularly visible at the company’s public events.

To read this article in full, please click here

Read more

Android’s new biometric spec for 'strong security' is anything but

Credit to Author: eschuman@thecontentfirm.com| Date: Tue, 24 Oct 2023 12:00:00 -0700

Google has released new biometrics specs for Android devices, with the top-level “strong security” option requiring only “a spoof and imposter acceptance rate not higher than 7%.” But most biometrics specialists say that for something to be considered “high security,” that imposter and acceptance rate should be closer to 1%.

That prompted me to ask Google for comment. Google replied by emailing an anonymous statement to be attributed to nobody that doesn’t directly defend the levels it chose — but did say security decisions are ultimately up to each handset manufacturer.

To read this article in full, please click here

Read more

Apple’s latest China App Store problem is a warning for us all

Read more

Microsoft addresses three zero-days for October’s Patch Tuesday

Read more