Microsoft Defender Local AI Agents: Your Endpoints Have Houseguests

Microsoft Defender finds the AI agents quietly occupying your endpoints.
Microsoft Entra ID for practitioners: identity governance, conditional access, Privileged Identity Management, Global Secure Access, and Zero Trust patterns that hold up in production.

Microsoft Defender finds the AI agents quietly occupying your endpoints.

Back in March, I showed you how to install the deadbolt: GSA file policies plus Purview DLP, blocking sensitive uploads at the network layer. A deadbolt is great. A deadbolt also has one glaring flaw. It cannot tell you who…

Every house has a junk drawer. You know the one. Dead batteries, three takeout menus, a single Allen wrench, and a charger for a phone you sold in 2018. Everything went in because “we might need it later.” Nothing has…

Microsoft Entra passkeys on Shared Windows PCs before serving phishing-resistant access to production.

GSA and Purview team up to block data leaks

If your org is starting to rely on tools like ChatGPT, Copilot, Claude, or Gemini, you are probably already thinking about data leakage. However, there is another problem that shows up fast. People can “talk” an AI tool into doing…

Taming AI agents with Entra Conditional Access guardrails

Connect GSA to Sentinel: see more, guess less.

Block risky clicks: enable Entra GSA Threat Intelligence.

Lock down Domain Controllers with Conditional Access magic.

Web filtering made fun and simple.

Protected Actions save more than meatloaf.

Spring clean your Entra groups with Access Reviews and keep access tidy.

It slices; it dices. Okay, not really. But the M365 Traffic Profile does speed up your apps and fend off cyber threats

Implement Entra Password Protection