US government sends ‘Microsoft message’ to companies after hackers brought down one of America’s biggest company for days

US government sends 'Microsoft message' to companies after hackers brought down one of America's biggest company for days

US government has issued an advisory urging companies to implement Microsoft’s newly released best practices for securing Microsoft Intune. The advisory, issued by Cybersecurity and Infrastructure Security Agency (CISA) comes after a cyberattack on America’s largest medical device maker by Iran-linked hackers last week. The attack disrupted the company’s service for more than 5 days. “CISA is aware of malicious cyber activity targeting endpoint management systems of U.S. organizations based on the March 11, 2026 cyberattack against U.S.-based medical technology firm Stryker Corporation, which affected their Microsoft environment,” the advisory says. “To defend against similar malicious cyber activity, CISA urges organizations to harden endpoint management system configurations using the recommendations and resources provided in this alert,” it adds. As per the advisory, principles of these recommendations can be applied to Intune and more broadly to other endpoint management software:

  • Use principles of least privilege when designing administrative roles.

Leverage Microsoft Intune’s role-based access control (RBAC) to assign the minimum permissions necessary to each role for completing day-to-day operations—permissions include what actions the role can take, and what users and devices it can apply that action to.

  • Enforce phishing-resistant multi-factor authentication (MFA) and privileged access hygiene.

Use Microsoft Entra ID capabilities (including Conditional Access, MFA, risk signals, and privileged access controls) to block unauthorized access to privileged actions in Microsoft Intune.

  • Configure access policies to require Multi Admin Approval in Microsoft Intune.

Set up policies that require a second administrative account’s approval to allow changes to sensitive or high-impact actions (such as device wiping), applications, scripts, RBAC, configurations, etc. The advisory further informs that CISA is conducting enhanced coordination with federal partners, including the Federal Bureau of Investigation (FBI), to identify additional threats and determine mitigation actions.

US cyber agency’s advisory to companies

In addition to strengthening Microsoft system, CISA also recommends reviewing the following resources to strengthen defenses against similar malicious cyber activity:Microsoft resources:

  • For recommendations on securing Microsoft Intune, see Best practices for securing Microsoft Intune.
  • For guidance on implementing Multi Admin Approval in Microsoft Intune, see Use Access policies to implement Multi Admin Approval.
  • For recommendations on configuring Microsoft Intune using zero trust principles, see Configure Microsoft Intune for increased security.
  • For guidance on implementing Microsoft Intune RBAC policies, see Role-based access control (RBAC) with Microsoft Intune.
  • For guidance on deploying Privileged Identity Management (PIM) across Microsoft Intune, Entra ID, and other Microsoft software, see Plan a Privileged Identity Management deployment.

CISA resources:

  • For guidance on implementing phishing-resistant multifactor authentication (MFA), see Implementing Phishing-Resistant MFA.

Source link

Visited 1 times, 1 visit(s) today

Related Article

Customers Prefer Apps Over Websites for Wireless and Home Internet Service

When you last checked your mobile or home internet bill, did you reach for your phone or sit down with your laptop or desktop computer? According to a new J.D. Power study, people would rather access their accounts via apps than websites. And that preference is especially strong when it comes to telecom companies such as

UK reverses course on AI copyright position after backlash

Chalk up a win for creative artists against AI companies. On Wednesday, the UK government abandoned its previous position on copyrighted works. It’s currently working on a data bill that, if unaltered, would have allowed AI companies like Google and OpenAI to train models on copyrighted materials without consent. Artists and other copyright holders would

Florida launches investigation into Discord app claiming its where predators contact kids: ‘This has to stop’

Florida AG investigation into Discord Florida’s Attorney General James Uthmeier held a press conference on Wednesday in Sarasota to announce an investigation into the social media app Discord.  SARASOTA, Fla. – Social media application Discord is under investigation after Florida’s Attorney General James Uthmeier stated it’s a place where predators feel comfortable meeting children. What

Google Pixel 10a vs Pixel 10: which should you buy?

The Google Pixel 10a boasts an impressively sleek design, Pixel 10-beating battery life, and a versatile main camera. Pros Pro-equaling main camera Genuinely useful AI software Strong battery life Cons No telephoto camera No Pixelsnap compatibility Tensor G4 chipset isn’t the fastest The Google Pixel 10 is the superior choice for keen photographers, and its

Garmin Smartwatches get WhatsApp and Pokémon Sleep Support

Summary created by Smart Answers AI In summary: Tech Advisor reports that Garmin users can now access a free WhatsApp app and Pokémon Sleep integration through the Connect IQ store on select watches. The WhatsApp app enables message viewing, keyboard responses, quick replies, and call management directly from the wrist, significantly enhancing communication capabilities. Pokémon

Papa Johns Selects Deliverect to Modernize U.S. Delivery Operations with AI-Powered Unified Ordering Platform |

The platform enables the brand to execute all orders, whether fulfilled by in-house delivery drivers or third-party service partners, through a single, intelligent system that connects every ordering channel, point-of-sale and delivery workflow into a unified operational delivery orchestration hub. 3.18.2026 Papa Johns has announced a strategic partnership with Deliverect to deploy its Smart Dispatch

Eye-opening simulation reveals why early mobile phones were so bulky

Almost everybody owns a smartphone of some form these days, yet that would prove to be quite the inconvenience if they were still as bulky and chunky as the earliest versions before the years slimmed them down. While phones are becoming more powerful with every subsequent year, the reverse is happening with the size of

Publix grocery shopping app discontinuing pay feature March 19

March 18, 2026, 5:01 a.m. ET Publix is discontinuing the Publix Pay feature on its mobile app starting March 19. The company stated the change allows it to focus on enhancing other app features for customers. Customers can still use other mobile payment options like Apple Pay and Google Pay at checkout. The Publix app

OnePlus 15T finally gets a launch date, bringing big things in a small package

The next palm-friendly premium phone from OnePlus has been surfacing in teasers and leaks for weeks. But now, the company has finally revealed the launch date for its upcoming OnePlus 15T. The device will debut later this month in China, arriving as the next compact powerhouse. In a recent teaser poster, OnePlus confirmed that the

5 Lessons From a Weekend Vibe Coding Class As a Non-Technical Person

I drifted to the coffee machine and chatted with a few fellow vibe coders. Then I stood there for a while, latte in hand, staring into space. My app was building itself — I didn’t even need to look at it. That was the refrain instructors repeated at a vibe-coding workshop in Singapore: Coding with

Spotify now rolling out redesigned Wear OS app with new gestures, more [Video]

Spotify is officially rolling out a redesign to its Wear OS app that includes new visuals on the Now Playing page and improvements to overall navigation. The updated experience of using Spotify for Wear OS will firstly show your currently playing music, with album art sitting behind track information and controls. A swipe down brings

Musi loses App Store case as judge rules Apple can delist apps at any time

When Apple removed the free music streaming app Musi from the App Store in 2024, the developers sued. This week, a federal judge dismissed the lawsuit with prejudice in what might become a landmark case related to App Store delistings. Here are the details. Apple came away with about as complete a legal victory as

This wild iPhone 17 Pro case features a touchscreen for 48MP selfies

The new Center Stage selfie camera is one of the best features of Apple’s iPhone 17 series — but why settle for 18MP snaps when 48MP selfies are possible? That’s the question posed by Kickstarter case brand Dockcase, whose latest offering, the Selfix case, adds a touchscreen to the back of your iPhone 17 Pro

Monitor and improve your web app’s load performance

Today, large web applications are often assembled from many independent pieces, which all load their own data and resources. When all these pieces compete for the same network connection, congestion can build up and the user experience can suffer. To address this problem, we’re excited to introduce a new feature which web developers can start

BuzzFeed debuts AI slop apps in bid for new revenue

BuzzFeed, the U.S.-based media company known best for its quizzes, listicles, and, for a time, a Pulitzer Prize-winning journalism division, is reinventing itself for the AI era. At least, that’s the pitch. At the SXSW conference in Austin, BuzzFeed co-founder and CEO Jonah Peretti introduced the company’s next media foray: a spin-off called Branch Office,

California DOJ Releases 2025 APPS Annual Report

“It takes a team of DOJ special agents and support staff to make APPS effective in removing firearms from those prohibited by law from possessing them.  This program operates with public safety in mind and Californians are safer because of it.” CSLEA President Alan Barcelona SACRAMENTO– On March 13, 2026, the California Attorney General announced

A PlayStation Portal update is adding a 1080p High Quality mode

Sony is rolling out a firmware update for its PlayStation Portal handheld that introduces a new quality option for both Remote Play and Cloud Streaming. Choosing the 1080p High Quality mode means that you’ll be able to stream games at a higher bitrate compared with the 1080p Standard option. You can switch to this mode

I Love How Skinny Oppo’s Foldable Phone Is, but I Hate That I Can’t Buy It

There’s a lot I like about Oppo’s Find N6 foldable phone, now that I’ve had some time to test it. It’s powerful, with glorious 8.12-inch inner and 6.62-inch outer displays and a new hinge design results in a barely noticeable crease on the inner display. It even has a triple IP rating for water resistance,

0
Would love your thoughts, please comment.x
()
x