techhub.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A hub primarily for passionate technologists, but everyone is welcome

Administered by:

Server stats:

4.6K
active users

#Intune

9 posts9 participants0 posts today

Ever wonder what the state of your devices look like for a Windows Hello for Business rollout? How many user accounts are on devices, what sort of biometrics are available? Here's a blog post with some helpful #Intune detection scripts to gather that data.

joeloveless.com/2025/08/gather

JoeLoveless.com · Gathering Data for a Windows Hello for Business RolloutA guide to gathering data for a successful Windows Hello For Business rollout using Microsoft Intune detection scripts.

🔊 #NowPlaying on #BBCRadio3:

#InTune
- In session with stellar classical artists

Petroc Trelawny with live music from clarinettist James Meldrum and pianist Maciej Kassak. Poet Laureate Simon Armitage talks about the 100 Years of the Shipping Forecast Prom.

Relisten now 👇
bbc.co.uk/programmes/m002ghgb

BBCBBC Radio 3 - In Tune, In session with stellar classical artistsPetroc Trelawny with Simon Armitage, clarinettist James Meldrum and pianist Maciej Kassak.

🔊 #NowPlaying on #BBCRadio3:

#InTune
- Live music and news from the world of classical

Petroc Trelawny with live music from pianist Melvyn Tan and viola player Simon Rowland-Jones, plus mezzo-soprano Susan Bickley joins us in the studio.

Relisten now 👇
bbc.co.uk/programmes/m002gdlb

BBCBBC Radio 3 - In Tune, Live music and news from the world of classicalPetroc Trelawny with live music from pianist Melvyn Tan and Susan Bickley sings.

🚨 𝗢𝘂𝘁𝘁𝗮𝗧𝘂𝗻𝗲: 𝗧𝗵𝗲 𝘀𝗼𝗿𝘁𝗮, 𝗻𝗼𝘁-𝗿𝗲𝗮𝗹𝗹𝘆, 𝗳𝗶𝘅

Earlier this year, I disclosed a security flaw in Microsoft Intune’s Conditional Access device filtering — where attackers with local admin rights could 𝙨𝙥𝙤𝙤𝙛 𝙙𝙚𝙫𝙞𝙘𝙚 𝙥𝙧𝙤𝙥𝙚𝙧𝙩𝙞𝙚𝙨 like device.model to 𝙗𝙮𝙥𝙖𝙨𝙨 𝙥𝙤𝙡𝙞𝙘𝙮 𝙚𝙣𝙛𝙤𝙧𝙘𝙚𝙢𝙚𝙣𝙩.

At first, it was marked “𝘽𝙮 𝘿𝙚𝙨𝙞𝙜𝙣.”
Then “𝙈𝙤𝙙𝙚𝙧𝙖𝙩𝙚 𝙨𝙚𝙫𝙚𝙧𝙞𝙩𝙮.”
Now, Microsoft says it’s “𝙛𝙞𝙭𝙚𝙙.”

🩹 𝗪𝗵𝗮𝘁 𝗰𝗵𝗮𝗻𝗴𝗲𝗱?
• Documentation now warns that 𝙨𝙤𝙢𝙚 𝙙𝙚𝙫𝙞𝙘𝙚 𝙥𝙧𝙤𝙥𝙚𝙧𝙩𝙞𝙚𝙨 𝙖𝙧𝙚 𝙪𝙣𝙩𝙧𝙪𝙨𝙩𝙚𝙙
• UX nudges were added in the CA policy editor and dashboard
• My name will appear in the MSRC researcher acknowledgements

🔐 𝗪𝗵𝗮𝘁 𝗱𝗶𝗱𝗻’𝘁 𝗰𝗵𝗮𝗻𝗴𝗲?
• 𝙉𝙤 𝙩𝙚𝙘𝙝𝙣𝙞𝙘𝙖𝙡 𝙘𝙤𝙣𝙩𝙧𝙤𝙡𝙨 prevent tampering
• Attackers can still 𝙢𝙤𝙙𝙞𝙛𝙮 𝙧𝙚𝙜𝙞𝙨𝙩𝙧𝙮 𝙫𝙖𝙡𝙪𝙚𝙨 and pass Conditional Access checks
• 𝘿𝙚𝙫𝙞𝙘𝙚 𝙩𝙧𝙪𝙨𝙩 𝙞𝙨 𝙨𝙩𝙞𝙡𝙡 𝙬𝙧𝙞𝙩𝙖𝙗𝙡𝙚 𝙗𝙮 𝙩𝙝𝙚 𝙙𝙚𝙫𝙞𝙘𝙚

New blog post here →
🔗 cirriustech.co.uk/blog/outtatu

If you rely on Intune or Entra for Zero Trust enforcement, 𝗿𝗲𝗮𝗱 𝘁𝗵𝗶𝘀.
And maybe… stop trusting the registry.

CirriusTech | Serious About Tech · Turn On, Tune In, Cop Out: The sorta, not-really, fix for OuttaTune from MicrosoftHighlighting Microsoft’s documentation and UX tweaks--and the remaining unfixed vulnerability

🔊 #NowPlaying on #BBCRadio3:

#InTune
- Live from the Edinburgh International Festival

Petroc Trelawny presents In Tune from The Hub in Edinburgh, with live music from the Dunedin Consort, pianists Pavel Kolesnikov and Samson Tsoy, and virtuoso fiddler Roby Lakatos

Relisten now 👇
bbc.co.uk/programmes/m002ggf8

BBCBBC Radio 3 - In Tune, Live from the Edinburgh International FestivalPetroc Trelawny presents a special edition of In Tune, live from The Hub in Edinburgh

🔊 #NowPlaying on #BBCRadio3:

#InTune
- Live music and chat with classical artists

Petroc Trelawny with live music from countertenor Hugh Cutting and pianist George Ireland. Conductor Sian Edwards talks to Petroc about conducting Falstaff at Glyndebourne.

Relisten now 👇
bbc.co.uk/programmes/m002g22x

BBCBBC Radio 3 - In Tune, Live music and chat with classical artistsPetroc Trelawny with live music from countertenor Hugh Cutting and pianist George Ireland.

Himmelblau 1.0 is here! 🎉

github.com/himmelblau-idm/himm

„Himmelblau is an interoperability suite for Microsoft Azure Entra ID and Intune.”

„Himmelblau supports Linux authentication to Microsoft Azure Entra ID via PAM and NSS modules. The PAM and NSS modules communicate with Entra ID via the himmelblaud daemon. Himmelblau also supports Intune device enrollment, policy enforcement, and marking devices as compliant with Intune MDM policies.”