News

4sysops
4sysops.com > archives > microsoft-sentinel-introduces-ai-powered-automation-and-delegated-access-at-rsac-2026

Microsoft Sentinel introduces AI-powered automation and delegated access at RSAC 2026

2+ hour, 51+ min ago  (976+ words) 4sysops - The online community for sys and AI ops Microsoft Sentinel playbooks are automated workflows that apply predefined response procedures to alerts and incidents. These workflows use data from connected sources such as Microsoft 365, Entra ID, Azure logs, and security devices,…...

4sysops
4sysops.com > archives > update-windows-secure-boot-db-certificates-with-group-policy-and-powershell

Update Windows Secure Boot DB certificates with Group Policy and PowerShell

4+ day, 16+ hour ago  (316+ words) 4sysops - The online community for sys and AI ops Three Microsoft certificates are affected: Microsoft Corporation KEK CA 2011, Microsoft Windows Production PCA 2011, and Microsoft Corporation UEFI CA 2011. Microsoft is replacing them with 2023 equivalents, most notably Windows UEFI CA 2023, Microsoft UEFI CA…...

4sysops
4sysops.com > archives > microsoft-adds-passkeys-to-entra-id-registration-campaigns

Microsoft adds passkeys to Entra ID registration campaigns – 4sysops

6+ day, 5+ hour ago  (819+ words) 4sysops - The online community for sys and AI ops Microsoft Entra ID registration campaigns are automated prompts that appear during user sign-in, nudging users to register for more secure authentication methods. These campaigns help organizations transition users from less secure authentication…...

4sysops
4sysops.com > archives > enable-rsat-remote-server-administration-tools-on-arm-based-windows-11-pcs

Enable RSAT (Remote Server Administration Tools) on Arm-based Windows 11 PCs – 4sysops

1+ week, 5+ day ago  (245+ words) 4sysops - The online community for sys and AI ops You can install them through the Control Panel or via command-line tools such as DISM and PowerShell. On Windows 11 version 26H1, the tools ship as Features on Demand (FODs), aligning Arm64 behavior with the…...

4sysops
4sysops.com > archives > windows-autopatch-update-readiness-management-status-report-quality-update-journey-alerts-and-update-readiness-checker

Windows Autopatch update readiness: management status report, quality update journey, alerts, and update readiness checker

2+ week, 5+ day ago  (282+ words) 4sysops - The online community for sys and AI ops The report surfaces the following device-level fields: To access the report, open the Microsoft Intune admin center and navigate to Devices > Overview > Autopatch management status or Devices > Windows updates > Monitor > Autopatch management…...

4sysops
4sysops.com > archives > microsoft-defender-onboarding-deployment-with-a-single-exe

Microsoft Defender onboarding deployment with a single EXE

2+ week, 5+ day ago  (590+ words) 4sysops - The online community for sys and AI ops The update fixes this by logging deployment tool events in the device timeline and advanced hunting tabs, giving admins visibility into onboarding progress and errors. A new deployment packages page also lets…...

4sysops
4sysops.com > archives > enable-windows-group-policy-preferences-gpp-debug-logging

Enable Windows Group Policy Preferences (GPP) debug logging

2+ week, 6+ day ago  (591+ words) 4sysops - The online community for sys and AI ops Debug logging configurable via Local Group Policy via gpedit.msc for these Windows versions: Microsoft has stated that documentation for the equivalent Windows Server update will be added when that release becomes…...

4sysops
4sysops.com > archives > enable-batch-file-secure-mode-in-windows-11-with-lockbatchfileswheninuse-lock-running-batch-scripts

Enable batch file secure mode in Windows 11 with LockBatchFilesWhenInUse: Lock running batch scripts

3+ week, 1+ day ago  (214+ words) 4sysops - The online community for sys and AI ops When you enable this mode, Windows locks the batch file during execution, ensuring it cannot be modified mid-run. This closes a potential attack vector where a script could be altered between individual…...

4sysops
4sysops.com > archives > monitoring-secure-boot-certificate-installation-status-with-intune-and-powershell

Monitoring Secure Boot certificate installation status with Intune and PowerShell

3+ week, 4+ day ago  (379+ words) 4sysops - The online community for sys and AI ops The 2011 Secure Boot CAs were embedded in device firmware at manufacturing time to validate boot components such as the Windows Boot Manager. The replacement certificates, including the Windows UEFI CA 2023 and Microsoft…...

4sysops
4sysops.com > archives > windows-server-2025-security-baseline-2602-10-new-settings

Windows Server 2025 security baseline 2602: 10 new settings

3+ week, 5+ day ago  (251+ words) 4sysops - The online community for sys and AI ops The policy Prevent downloading of enclosures under Windows Components > RSS Feeds has been removed from the baseline. This setting was originally designed to block attachment downloads in Internet Explorer's RSS feed reader…...