Block this first: the critical baseline every IT team needs
ID: 6d042ff7-bf9c-5a25-a990-c31350e112c4
STIX ID: report--6d042ff7-bf9c-5a25-a990-c31350e112c4
Feed Name: ThreatLocker Blog
This guide recommends reducing attack surface by disabling legacy SMBv1, blocking/auditing SMB where unnecessary, and enforcing strict Microsoft Office macro policies (blocking internet-sourced macros and setting VBA notifications), with practical steps via Group Policy and ThreatLocker Config Manager; it includes PowerShell tips to disable SMBv1 and enable SMBv2/v3, citing WannaCry as a reminder of the risks of outdated protocols.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
