Sign in

kandji.bsky.social

@kandji.bsky.social
35 followers 3 following 96 posts
PostsRepliesMedia
kandji.bsky.social @kandji.bsky.social · 01/05/2025
Why does Kandji invest in proprietary security research? Because when we find vulnerabilities before attackers do, everyone wins. Our team put together a walk-through of the past year's discoveries—dive in here:
buff.ly
macOS Vulnerabilities: A Year of Security Research at Kandji
Kandji researchers uncovered and disclosed key macOS vulnerabilities over the past year. Learn how we protect customers through detection and patching.
000
kandji.bsky.social @kandji.bsky.social · 30/04/2025
Apple’s influence in enterprise IT keeps growing—but are they living up to expectations? 👀 The latest Six Colors Apple in the Enterprise Report Card for 2025 is out and explores the answer.
sixcolors.com
Apple in the Enterprise: A 2025 report card
Kandji approached Six Colors to commission a new entry in their Report Card series focusing on how Apple’s doing in large organizations. Explore the 2025 survey results, plus comments from survey participants.
100
kandji.bsky.social @kandji.bsky.social · 29/04/2025
Ask an IT admin what keeps them up at night, and they’ll likely tell you: 👉 A patch that introduces a system-breaking bug. 👉 A security update that conflicts with legacy apps. 👉 A misconfiguration that locks users out.
100
kandji.bsky.social @kandji.bsky.social · 25/04/2025
Kandji’s latest Demo Day focused on Assignment Maps, a visual, logic-based way to automate and precisely control the assignment of apps and configurations to your devices. See how this powerful feature can revolutionize your device management:
buff.ly
The Future of Scoping: Assignment Maps Explained
In Kandji's latest Demo Day, learn how Assignment Maps make app and configuration management for Apple devices easier and more intuitive.
011
kandji.bsky.social @kandji.bsky.social · 23/04/2025
Think about your team's daily IT operations. How much time is spent on: Resetting passwords? Deploying software updates? Approving access requests? Scrambling for compliance reports? Now, imagine if none of those tasks required manual intervention.
100
kandji.bsky.social @kandji.bsky.social · 22/04/2025
Security threats evolve faster than manual processes can keep up. If you’re not automating security, you’re falling behind.
100
kandji.bsky.social @kandji.bsky.social · 17/04/2025
5 IT and security workflows to automate today: 1️⃣ Onboarding & offboarding – No more access lag. 2️⃣ Patching – Close vulnerabilities faster. 3️⃣ Threat detection & response – Cut incident response time. 4️⃣ Compliance monitoring – Avoid fines. 5️⃣ Software deployment – No more manual installs.
000
kandji.bsky.social @kandji.bsky.social · 16/04/2025
Are you curious where your peers get updates on the latest IT and security news? We were curious too. So we took the question to our community in a broad survey of professionals - from security experts to technology leaders and admins. Results found here: www.kandji.io/blog/top-content-for-it-pros
000
kandji.bsky.social @kandji.bsky.social · 15/04/2025
Does this make any sense to you?! I'm not afraid to admit that I honestly don't understand it. If you have a legitimate explanation, please explain it to me in the comments! #MacSecurity #MacAdmin #DeviceSecurity #MacOS #iOS
000
kandji.bsky.social @kandji.bsky.social · 14/04/2025
Our Threat Intelligence team analyzed a software suite that targets applications like WeChat and QQ. Explore our team's analysis on this suspicious mach-O file's likely origins, target users, and observed functionality: buff.ly/bkhlcoy
kandji.io
PasivRobber: Chinese Spyware or Security Tool?
In March 2025, our team found a suspicious mach-O file named wsus. Read the full analysis on its likely origins, target users, and observed functionality.
010
kandji.bsky.social @kandji.bsky.social · 11/04/2025
A Fortune 500 company’s IT team was manual-first by design. Their CIO believed automation would introduce risk. Then it happened. ❌ A zero-day exploit hit. ❌ The patch was available, but deployment took 48 hours. ❌ Within 24 hours, attackers had breached 30% of their systems. Their competitors?
100
kandji.bsky.social @kandji.bsky.social · 09/04/2025
Are you getting the most out of Apple Business Manager (ABM)? Most companies think they’re using ABM correctly, but in reality, they’re leaving powerful features untapped. Here’s what we see IT teams overlooking when managing Apple devices:
100
kandji.bsky.social @kandji.bsky.social · 08/04/2025
CVE-2025-24201, a high-severity WebKit vulnerability targeting multiple AppleOS platforms, can affect multiple browsers. Learn what this means for your organization with our team's breakdown: buff.ly/xnSJ3OI #ITsecurity #VulnerabilityManagement #ThreatIntelligence #DeviceSecurity
buff.ly
Caught in the WebKit: Getting Tangled with CVE-2025-24201
CVE-2025-24201, a high-severity WebKit vulnerability, can affect multiple browsers. Learn what this means for your organization and what to monitor next.
000
kandji.bsky.social @kandji.bsky.social · 07/04/2025
Manual configurations don’t scale. Assignment Maps do. Assignment Maps rethink how IT teams scope and configure devices—turning what’s usually a time-consuming process into something intuitive, automated, and reliable.
buff.ly
Demo Day - Assignment Maps
Join Demo Day to explore how Assignment Maps automate device scoping and configuration for Apple fleets, featuring expert insights and a live Q&A session.
100
kandji.bsky.social @kandji.bsky.social · 03/04/2025
This is a big misconception about Kandji that simply isn't true. We second Arek's dare. Here's our free trial link: signup.kandji.io 👀 #Kandji #MDM #EDR #ITAdmin #MacAdmin
000
kandji.bsky.social @kandji.bsky.social · 02/04/2025
Imagine an onboarding experience for your users that automates the configuration process; ensuring that freshly enrolled Mac computers are transformed into enterprise-ready devices with all necessary apps, settings, and security controls in place before your users start using them.
100
kandji.bsky.social @kandji.bsky.social · 31/03/2025
Were you even aware of these creative ways for organizations to utilize Apple Vision Pro?! 👀 If you're not thinking outside the box with use cases for Vision devices, then you may be missing out on innovation in ways not previously possible.
000
kandji.bsky.social @kandji.bsky.social · 27/03/2025
MDM + Identity Provider = Conditional Access Granted When an MDM, such as Kandji, is paired with an identity provider, it allows for you to successfully facilitate conditional access policies. Kandji happens to be super easy to configure with your identity provider, making for easy execution.
010
kandji.bsky.social @kandji.bsky.social · 26/03/2025
How often does your company delay security patches because of potential disruptions? 😎 Never – we automate everything 🎯 Sometimes – we test first, then deploy ⚠️ Often – we worry about breaking apps 🚨 Too often – security takes a back seat Reply with the emoji that describes your organization.
000
kandji.bsky.social @kandji.bsky.social · 25/03/2025
Is your IT team being asked to do more with less? It’s happening everywhere. IT budgets are shrinking. Headcounts are getting cut. IT teams are being asked to manage more devices, more security risks, and more compliance requirements—all with fewer resources.
100
kandji.bsky.social @kandji.bsky.social · 24/03/2025
What’s the biggest challenge YOU face when managing OS updates? How are you handling it today? #AppleDeviceManagement #MDM #MacAdmin
000
kandji.bsky.social @kandji.bsky.social · 21/03/2025
Lack of management capabilities should never be a reason that your enterprise has to hesitate to use specific types of devices. Yet when it comes to Apple Vision Pro, most device management solutions don't actually have the capabilities for organizations to use Vision devices with confidence.
100
kandji.bsky.social @kandji.bsky.social · 20/03/2025
Your organization is more vulnerable than you might realize. 👀 There are many different types of attack vectors, and although some are more common than others, that doesn't mean your organization can afford to not be protected against the behaviors of all the vectors out there.
100
kandji.bsky.social @kandji.bsky.social · 19/03/2025
IT teams are getting smaller. Security risks are getting bigger. Yet companies keep cutting IT budgets and personnel to save costs—even as cyberattacks become more frequent and expensive. If your IT team is shrinking, your strategy needs to change.
110
kandji.bsky.social @kandji.bsky.social · 18/03/2025
A conditional access policy is only as good as THIS ONE THING. This is one of the biggest mistakes many admins make when designing conditional access policies. But if you design with this in mind, you're automatically setting your organization up for success with your conditional access policy.
000
kandji.bsky.social @kandji.bsky.social · 17/03/2025
Lost devices are inevitable. But data loss doesn't have to be. IT teams are moving away from reactive security measures and embracing proactive lost-device policies. Leading organizations are adopting:
100
kandji.bsky.social @kandji.bsky.social · 14/03/2025
One of the most common headaches for IT teams? Employees signing into corporate devices w/ personal Apple IDs. When this happens, IT loses control over app installations, iCloud backups, & device management. If an employee leaves, their Apple ID could lock IT out—making device recovery a nightmare.
100
kandji.bsky.social @kandji.bsky.social · 13/03/2025
IT teams struggle with app control. Too much freedom? Security risks skyrocket. Too much restriction? Employees get frustrated and find workarounds. The solution isn’t just blocking everything—it’s implementing smart security policies.
100
kandji.bsky.social @kandji.bsky.social · 12/03/2025
Apple is all about giving you the latest and greatest. So shouldn't your support for managing Apple devices be the latest and greatest as well? That's why we provide enterprises with device management that matches these standards, and as of last week, this now includes support for Vision devices.
000
kandji.bsky.social @kandji.bsky.social · 11/03/2025
Kandji recently released Universal Search-- a new feature that puts the entire Kandji platform at your fingertips. Explore the details of our new Universal Search feature here: buff.ly/cLPf6lj
000
kandji.bsky.social @kandji.bsky.social · 10/03/2025
This is one of the hardest things for admins to get right. It's tricky to balance, and many admins don't know the right answer. Ease of usability vs. security in a conditional access policy - which side do you gravitate toward on this scale? #ITAdmin #MacAdmin #MDM #DeviceManagement
010
kandji.bsky.social @kandji.bsky.social · 06/03/2025
Kandji is thrilled to be recognized on Forbes’ America’s Best Startup Employers 2025 list, which identifies the top-performing startups in the United States based on employer reputation, employee satisfaction, and company growth. P.S. If you want to join us, here's our open roles: buff.ly/wLPdLqD
000
kandji.bsky.social @kandji.bsky.social · 04/03/2025
Mac devices have a reputation for strong security, but threat actors are getting smarter. The biggest macOS malware trend? InfoStealers—and AtomicStealer is leading the charge.
100
kandji.bsky.social @kandji.bsky.social · 27/02/2025
Keeping macOS devices up-to-date without disrupting productivity is crucial. Here are some easy-to-implement tips to help you do this in your environment: ✅ Schedule updates during off-hours or weekends to ensure users aren’t interrupted during peak work times.
100
kandji.bsky.social @kandji.bsky.social · 26/02/2025
Today, we're excited to announce Device Management for Vision, bringing Vision Pro device support to the existing device management capabilities in Kandji. Oh, and it’s included for free with the iOS Device Management product in Kandji. Learn more about it here: buff.ly/43drhWV
buff.ly
Kandji Introduces Device Management for Apple Vision
Explore Kandji’s Device Management for Vision Pro—streamline deployment, enforce security, and optimize enterprise management effortlessly.
000
kandji.bsky.social @kandji.bsky.social · 24/02/2025
Are you making someone rich right now without even realizing it?! 👀 This is one of the most overlooked and ignored types of malware currently out there. But if you have Kandji's EDR solution, you won't have to fall victim to this malware. 😎 #cybersecurity #malware #EDR #cryptojacking #ITsecurity
000
Reposted by @kandji.bsky.social
Csaba Fitzl @theevilbit.bsky.social · 21/02/2025
🍎🪳My last blog post in the storagekitd - diskarbitrationd vulnerability series, which I presented at #POC2024 and @blackhatevents.bsky.social #BHEU2024 as part of my "Apple Disk-O Party" talk, is up @kandji.bsky.social 's site: www.kandji.io/blog/macos-a...
kandji.io
Uncovering Apple Vulnerabilities: diskarbitrationd and storagekitd Audit Part 3
Exploring CVE-2024-27848 & CVE-2024-44210: How macOS vulnerabilities in storagekitd allowed privilege escalation, how they were exploited & Apple’s patch.
011
kandji.bsky.social @kandji.bsky.social · 21/02/2025
IT professionals don’t tend to get into this field to spend their days just resetting passwords and approving access requests. But for too many teams, that’s the reality. Here’s how to start automating IT workflows—without overcomplicating the process:
100
kandji.bsky.social @kandji.bsky.social · 20/02/2025
Did you see the news last week? 👀 Kandji announced Vulnerability Management to help IT and security teams identify, assess, prioritize, and remediate vulnerabilities on Mac devices - all through a unified workflow in a unified platform. Read more about it here: buff.ly/432J9E6
buff.ly
Vulnerability Management: First Unified Platform to Detect & Remediate on Mac
Kandji announces Kandji Vulnerability Management, which helps IT and security teams identify and remediate vulnerabilities through a unified workflow.
022
kandji.bsky.social @kandji.bsky.social · 19/02/2025
Our dedication to harmonizing technology and security through innovative software that powers secure and productive global work is reflected in every stride we take. It has propelled us onto G2’s elite 2025 Best Software list for Best IT Management Software Products.
100
kandji.bsky.social @kandji.bsky.social · 18/02/2025
Have you ever experienced the frustration behind devices in your environment having conflicting settings through your MDM? We knew there had to be a better way. That's why Kandji's Assignment Maps were built from the very beginning to provide near-infinite flexibility while reducing complexity.
100
kandji.bsky.social @kandji.bsky.social · 14/02/2025
We asked some of our team members what they ~love~ about working here at Kandji. Here's what they said: 💛 Assaf Miller: "Finding a workplace that truly cares about you is rare. Kandji is one of those places." See our job openings here: www.kandji.io/company/care...
kandji.io
Careers | Kandji
Open job opportunities at Kandji, the modern MDM for Apple.
100
kandji.bsky.social @kandji.bsky.social · 12/02/2025
A lot of Kandji customers asked for this... and we listened. Kandji is officially announcing Vulnerability Management to help organizations identify, assess, prioritize, and fix security vulnerabilities due to out-of-date software on their Mac computers. #VulnerabilityManagement #MacAdmin
101
kandji.bsky.social @kandji.bsky.social · 11/02/2025
A device shouldn’t touch your corporate network until it’s fully secured. Yet many companies still allow new devices to connect before they’ve been: -Enrolled in MDM -Configured with security policies -Verified for compliance That’s a security gap just waiting to be exploited.
100
kandji.bsky.social @kandji.bsky.social · 10/02/2025
Device management is more than just a line item on the IT budget. It’s a strategic investment that impacts your bottom line. The ROI of a stand-out #MDM goes far beyond device enrollment—it drives operational efficiency, boosts security, and scales with your business. Do you agree?
000
kandji.bsky.social @kandji.bsky.social · 07/02/2025
Shadow IT is one of the biggest blind spots in modern security. Employees download unauthorized apps every day—sometimes to make their jobs easier, sometimes out of habit, and sometimes because they don’t realize the risks.
110
Reposted by @kandji.bsky.social
Arek Dreyer @arekd.bsky.social · 21/11/2024
With today’s update to Kandji Agent, Kandji EDR now recognizes any file with the EICAR string as malware (previously it needed to be in an executable file). This makes testing much easier. www.kandji.io/updates/anno... www.eicar.org/download-ant... What’s your take on the EICAR test file?
kandji.io
Kandji Agent version 4.6.5 (5228)
We’ve released Kandji Agent version 4.6.5 (5228) with the following improvements:
152