Homebrew Security Intune script deployment

Auditing Homebrew Security with Microsoft Intune: Detect Supply Chain Risks on Your Mac Fleet

Let’s be real: Homebrew is amazing. It’s the missing package manager for macOS that every developer loves. However, in an enterprise environment, Homebrew can also be a security nightmare waiting to happen. World-writable binaries? Third-party taps from who-knows-where? Supply chain attacks through git remote hijacking? Yeah, that’s exactly what keeps security teams up at night. […]

Read More

tracking-microsoft-defender-pua-policy-changes-with-intune-custom-attributes

Tracking Microsoft Defender PUA Policy Changes with Intune Custom Attributes

In the ever-evolving battleground of endpoint security, Microsoft Defender for Endpoint stands as a vigilant guardian against the rising tide of cyber threats. But even the best guardians can sometimes be a bit… forgetful. What happens when your Microsoft Defender PUA Policy settings start changing mysteriously on your macOS devices? In my previous post we […]

Read More

Report apps that use Location Services

Who’s Watching? Auditing macOS Location Services with Intune.

In my ongoing mission to strengthen macOS device security with Microsoft Intune, today I’m focusing on macOS Location Services, and 2 recommendations from the CIS Level 2 benchmarks for macOS devices. We’ll explore recommendation 2.6.1.2 Ensure ‘Show Location Icon in Control Center when System Services Request Your Location’ Is Enabled and recommendation 2.6.1.3 Audit Location […]

Read More