Month: May 2019

Windows 10 News You Can Use – May 2019

Posted on Updated on

Win10NewsLogo Windows 10 news you can use, May 2019 edition

Providing insights into Windows 10 deployment & management, security & compliance, and productivity. Also see other news related to Windows 10.

The next generation of Microsoft Edge! In December, we announced our intention to adopt the Chromium open source project in the development of Microsoft Edge on the desktop. Our goal is to work with the larger Chromium open source community to create better web compatibility for our customers and less fragmentation of the web for all web developers. Today we’re embarking on the next step in this journey – our first Canary and Developer builds are ready for download on Windows 10 PCs. Canary builds are preview builds that will be updated daily, while Developer builds are preview builds that will be updated weekly. Beta builds will come online in the future. Support for Mac and all supported versions of Windows will also come over time.
https://blogs.windows.com/windowsexperience/2019/04/08/microsoft-edge-preview-builds-the-next-step-in-our-oss-journey

Deployment & Management
  1. Introducing the Microsoft Edge Insider Channels. The new Microsoft Edge builds are available through preview channels that we call “Microsoft Edge Insider Channels.” We are starting by launching the first two Microsoft Edge Insider Channels, Canary and Dev, which you can download and try at the Microsoft Edge Insider site. These channels are available starting today on all supported versions of Windows 10, with more platforms coming soon.
    https://blogs.windows.com/msedgedev/2019/04/08/microsoft-edge-preview-channel-details
  2. Windows defines two main policies, Quick removal and Better performance, that control how the system interacts with external storage devices such as USB thumb drives or Thunderbolt-enabled external drives. Beginning in Windows 10 version 1809, the default policy is Quick removal. In earlier versions of Windows, the default policy was Better performance.
    https://support.microsoft.com/en-us/help/4495263/windows-10-1809-change-in-default-removal-policy-for-external-media
  3. The benefits of Windows 10 Dynamic Update. Dynamic Update can help organizations and end users alike ensure that their Windows 10 devices have the latest feature update content (as part of an in-place upgrade)—and preserve precious features on demand (FODs) and language packs (LPs) that may have been previously installed. Further, Dynamic Update also eliminates the need to install a separate quality update as part of the in-place upgrade process. From an IT perspective, using Dynamic Update reduces the need to apply separate updates to recently installed systems and makes it easier to get your devices up to date with the latest available quality update in one step.
    https://techcommunity.microsoft.com/t5/Windows-IT-Pro-Blog/The-benefits-of-Windows-10-Dynamic-Update/ba-p/467847
  4. Configuring Windows 10 defaults via Windows Autopilot using an MSI.
    https://techcommunity.microsoft.com/t5/Windows-IT-Pro-Blog/Configuring-Windows-10-defaults-via-Windows-Autopilot-using-an/ba-p/457063
  5. Configuring even more Windows 10 defaults via Windows Autopilot using an MSI.
    https://techcommunity.microsoft.com/t5/Windows-IT-Pro-Blog/Configuring-more-Windows-10-stuff-via-Windows-Autopilot-using-an/ba-p/467861
  6. Microsoft Helps video (1:30) on how to create a report of Mobile Device Manager (MDM) logs to diagnose enrollment or device management issues in Windows 10 devices managed by Intune.
    https://www.youtube.com/watch?v=WKxlcjV4TNE
  7. Microsoft Helps video (10:27) on tips to manage and deploy updates for Surface and Window 10, including allowing firmware and security updates while holding off on feature updates as your organization evaluates each new release of Windows 10. This video walks through 5 management practices: an Overview of Defer Feature Updates, Windows feature update cycle, Office and Windows Configuration Manager update cycle, security updates, and Update compatibility with apps and hardware.
    https://www.youtube.com/watch?v=LK6RMRPJ4To
  8. Microsoft Helps video (6:11) on how Windows Autopilot can transform how you deploy Surface and Windows 10 devices in your organization. Windows Autopilot set ups and pre-configures new devices, getting them ready to use. You can also use Windows Autopilot to reset, repurpose and recover devices. We’ll cover how it works as well as the user experience once they receive the device. Content includes: traditional vs. modern deployment, how Autopilot works, and setting up a device.
    https://www.youtube.com/watch?v=8D8ZN1RKChk
Security & Compliance
  1. Microsoft Defender ATP built-in threat summary and health reports. The threat protection reporting dashboard provides alert information over time, as well as aggregated threat protection views. Knowing the trends and summaries in your organization can help identify where focused improvements can be made.
    https://techcommunity.microsoft.com/t5/Windows-Defender-ATP/Microsoft-Defender-ATP-built-in-threat-summary-and-health/ba-p/392088
  2. Third-party kernel drivers are becoming a more appealing target for attackers and an important area of research for security analysts. A vulnerability in a signed third-party driver could have a serious impact: it can be abused by attackers to escalate privileges or, more commonly, bypass driver signature enforcement—without the complexity of using a more expensive zero-day kernel exploit in the OS itself. We discovered such a driver while investigating an alert raised by Microsoft Defender Advanced Threat Protection’s kernel sensors. In this blog post, we’d like to share our journey from investigating one Microsoft Defender ATP alert to discovering a vulnerability, cooperating with the vendor, and protecting customers.
    https://www.microsoft.com/security/blog/2019/03/25/from-alert-to-driver-vulnerability-microsoft-defender-atp-investigation-unearths-privilege-escalation-flaw
  3. Microsoft Threat Experts is the managed threat hunting service in Microsoft Defender Advanced Threat Protection (ATP). It provides security operations centers (SOCs) with expert-level oversight and analysis to help ensure that critical threats in their unique environments are identified, investigated, and resolved. Get more details about the service here: Announcing Microsoft Threat Experts. Today, we are announcing the general availability of Microsoft Threat Experts targeted attack notification capability. Targeted attack notification, one of Microsoft Threat Experts’ two components, provides proactive hunting, prioritization, and alerts that are tailored to organizations. These alerts include as much information as can be quickly delivered to bring attention to critical threats, including timeline, scope of breach, and methods, to further empower SOCs to identify and respond to threats quickly and accurately.
    https://techcommunity.microsoft.com/t5/Windows-Defender-ATP/Microsoft-Threat-Experts-reaches-general-availability/ba-p/502493
  4. Introducing the security configuration framework: A prioritized guide to hardening Windows 10.
    https://www.microsoft.com/security/blog/2019/04/11/introducing-the-security-configuration-framework-a-prioritized-guide-to-hardening-windows-10
  5. Preview! Windows Defender Application Guard as browser extensions in Google Chrome and Mozilla Firefox. To extend our container technology to other browsers and provide customers with a comprehensive solution to isolate potential browser-based attacks, we have designed and developed Windows Defender Application Guard extensions for Google Chrome and Mozilla Firefox.
    https://docs.microsoft.com/en-us/windows-insider/at-work-pro/wip-4-biz-whats-new#windows-defender-application-guard-as-browser-extensions-in-google-chrome-and-mozilla-firefox
  6. MDATP Threat & Vulnerability Management now publicly available! This is a new Microsoft Defender ATP component that helps effectively identify, assess, and remediate endpoint weaknesses and provides both security administrators and security operations teams with unique value, including: real-time endpoint detection and response (EDR) insights correlated with endpoint vulnerabilities, invaluable machine vulnerability context during incident investigations, built-in remediation processes through Microsoft Intune and SCCM.
    https://techcommunity.microsoft.com/t5/Windows-Defender-ATP/MDATP-Threat-amp-Vulnerability-Management-now-publicly-available/ba-p/460977
  7. At the RSA conference, we announced the general availability for Microsoft Defender ATP’s integration with Microsoft Cloud App Security – delivering a native integration to discover the cloud apps used in your organization. This is the first step towards enabling a seamless, zero deployment, native cloud app security solution that works any time any-where.
    https://techcommunity.microsoft.com/t5/Windows-Defender-ATP/Microsoft-Defender-ATP-amp-Microsoft-Cloud-App-Security/ba-p/457239
  8. Announcing the general availability of Microsoft Defender ATP APIs – a rich and complete set of APIs geared to fulfill the needs of security operations teams, enabling interoperability with enterprise security applications and automation. These capabilities enable customers to integrate and orchestrate defenses across their solution stack and management systems to orchestrate Microsoft Defender ATP; enabling security teams to effectively respond to modern threats.
    https://techcommunity.microsoft.com/t5/Windows-Defender-ATP/Announcing-Microsoft-Defender-ATP-API-updates/ba-p/473462
  9. In an ideal world, all your critical devices would be seen by, reported on, and protected by Microsoft Defender ATP, however we’re aware that there are legitimate scenarios where devices simply can’t be connected to the Internet or a management service. As such, we have released a whitepaper with all the info you need to understand how security is impacted by the unique challenges of being disconnected. It talks about the types of disconnected devices, and — most importantly — provides guidance on the various features and protection technologies you can use from Microsoft to protect these disconnected devices.
    https://techcommunity.microsoft.com/t5/Windows-Defender-ATP/Protecting-disconnected-devices-with-Microsoft-Defender-ATP/ba-p/500341
Productivity
  1. Windows 10 Tip: Dark theme in File Explorer.
    https://blogs.windows.com/windowsexperience/2019/04/01/windows-10-tip-dark-theme-in-file-explorer
  2. Windows 10 Tip: Snip & Sketch. Since it’s available in the Microsoft Store, Snip & Sketch can update faster and more frequently. It’s already had four app updates with new features since it was introduced in the October 2018 Update.
    https://blogs.windows.com/windowsexperience/2019/04/08/windows-10-tip-snip-sketch
  3. Windows 10 Tip: What’s new in Skype (consumer) for Windows 10 PCs.
    https://blogs.windows.com/windowsexperience/2019/04/15/windows-10-tip-whats-new-in-skype-for-windows-10-pcs
  4. Windows 10 makes wireless projection
    https://community.windows.com/en-us/videos/windows-10-makes-wireless-projection-easy/MmOtnAToalo
  5. Stay organized with Sticky Notes in Windows 10.
    https://community.windows.com/en-us/stories/windows-10-sticky-notes
  6. Customize Microsoft Edge for better browsing.
    https://community.windows.com/en-us/stories/microsoft-edge-settings
  7. Video (4:05) Windows 10 wireless projection makes it easy to present your work, share memories, and watch your favorite movies on a big screen without stepping out the door.
    https://www.youtube.com/watch?v=MmOtnAToalo
  8. Video (2:48) Windows 101: Windows Calculator for easy length conversions.
    https://www.youtube.com/watch?v=0Uq1icFOmTs
  9. Windows 10 Tip: See your top sites in the Jump List.
    https://blogs.windows.com/windowsexperience/2019/04/29/windows-10-tip-see-your-top-sites-in-the-jump-list
In other news related to Windows 10…
Advertisement