Tag: MicrosoftEntra
-
The Zombie Endpoint: When Stale Records Refuse to Die
Last week, we looked at the classic Friday-afternoon nightmare: staring at three identical device objects in Microsoft Entra ID while trying to deploy a critical policy. We mapped out the two main control planes—Entra ID for identity and access, Intune for management—and talked about why a brute-force deletion sweep is a terrible idea, especially when…
-
I’m Surrounded by a Bunch of Device Objects: Cleaning House in the Cloud Without Burning Everything Down
It’s 4:30 PM on a Friday. You’re trying to deploy a critical new Device config policy to a specific laptop, but when you type the hostname into the search bar to add the device to an Entra ID group, Microsoft Entra ID spits back three identical objects. Two are stale, one is active, and they…
-
The Stryker Incident: When Your Own Tools are Weaponized (and How to Stop It)
You’ve probably heard about the recent activity at Stryker, and to put it bluntly: it sucks. In March 2026, the medtech giant got hit by a massive “living off the land” attack. The scary part? The attackers reportedly hijacked Microsoft Intune to send remote wipe commands to over 200,000 devices. Imagine waking up to find…