How to disable SMB 1 on Windows 7 via Group Policy to Prevent WannaCry

Update 1: These instructions will mitigate WannaCry / Wcry / WannaCrypt virus propagation on Windows 7 and later (Windows 10 is not affected). For more technical details about the virus see Troy Hunts blog at https://www.troyhunt.com/everything-you-need-to-know-about-the-wannacrypt-ransomware/ In case you have not got the message yet SMB 1 protocol Bad and that according to Microsoft you …

Continue reading ‘How to disable SMB 1 on Windows 7 via Group Policy to Prevent WannaCry’ »

How to disable SSL v2 and SSL v3 on Windows Server via Group Policy

In this article I will show you how to disable the SSL v2 and SSL v3 protocols on the Windows Server so that it no longer offers the depreciated (a.k.a. Broken) SSL v2 and v3 security protocols. It also does not hurt if you apply this policy settings to your Windows client computers in case any of them have …

Continue reading ‘How to disable SSL v2 and SSL v3 on Windows Server via Group Policy’ »

How to stop local administrators from bypassing Group Policy

Before I begin this article might be, for some of you, this will be well know information and it might all seem rather logical. But I continue to see questions being asked on forums as how as a Group Policy administrator can I prevent my users with local admin making a specific change or installing software/drivers on their own computer. …

Continue reading ‘How to stop local administrators from bypassing Group Policy’ »

Vulnerability in Group Policy Fixed with MS15-011 & MS15-014

Today Microsoft published hotfix MS15-011 and MS15-014 that addressed a potential issues that could allow an man in the middle attack on computer. This vulnerability affected system that could be compromised by a man in the middle or what I like to call a “Coffee Shop Attack”. The summary is that by interfering with the …

Continue reading ‘Vulnerability in Group Policy Fixed with MS15-011 & MS15-014’ »