Skip to content

Blogs

Chrome Just Enabled Gemini AI on Your Managed Devices.

Here Is How to Govern It Properly in Your Enterprise via Intune. Why This Blog Exists Google Gemini is a genuinely impressive AI assistant. Millions of people use it every day for research, writing, summarization… 

Apple Is Killing iOS & macOS Update Policies in Intune

Summary If you manage iPhones, iPads, or Macs through Microsoft Intune, your current software update policies are running on borrowed time. At WWDC 2025, Apple officially deprecated all legacy MDM-based software update mechanisms. With the… 

Email Bombing – Two-Day Incident

A Real-World Two-Day Incident in Microsoft 365 What Is Email Bombing? Email bombing – also called subscription bombing or mail flooding is an attack technique where a threat actor floods a target mailbox with hundreds… 

Windows 11 25H2 Security Baseline

Now in Intune – What Changed, What Breaks, and How to Deploy Safely What Just Landed and Why You Need to Act Microsoft has released the Windows 11 version 25H2 Security Baseline in Microsoft Intune… 

Windows Hotpatch Goes Default in May 2026

What IT Teams Need to Know, Configure, and Watch Out For What Is Happening and Why It Matters Starting with the May 2026 Windows security update, Microsoft is enabling hotpatch updates by default for all… 

Preparing for Windows Secure Boot Certificate Expiry

Deploying the Windows UEFI CA 2023 via Microsoft Intune Introduction Starting in June 2026, the Windows UEFI CA 2011 certificates used to cryptographically sign Secure Boot components will begin to expire. Devices that have not… 

Deploying SCEP via Intune + Aruba ClearPass with OCSP/CRL Validation

Introduction In today’s enterprise environments, password-based Wi-Fi authentication is simply not enough. Credential theft, phishing, and unauthorized device access are constant threats. The gold standard for securing wireless access is certificate-based EAP-TLS authentication, where only…