Endpoint Security

Elastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM support

Elastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM support 2026-08-03 at 11:31 By Mirko Zorz Attackers reaching for kernel access on a Windows machine bring a driver Microsoft already trusts. It is signed, it loads, and it carries a known flaw. That flaw gives them enough room to tamper with memory […]

Elastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM support Read More »

ThreatLocker Raises $190 Million in Series F Funding

ThreatLocker Raises $190 Million in Series F Funding 2026-07-29 at 15:17 By Eduard Kovacs The company was previously valued at $1.6 billion, and the latest raise has significantly increased that valuation. The post ThreatLocker Raises $190 Million in Series F Funding appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

ThreatLocker Raises $190 Million in Series F Funding Read More »

Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe

Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe 2026-07-28 at 17:19 By Eduard Kovacs Apple announced that dozens of vulnerabilities have been patched in each of its operating systems. The post Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe Read More »

Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation

Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation 2026-07-22 at 13:00 By Ionut Arghire Using AI, the startup provides adaptive prevention through environment mapping, risk analysis, and automated policy enforcement. The post Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation appeared first on SecurityWeek. This article is

Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation Read More »

Old UEFI Shims Expose Systems to Secure Boot Bypass

Old UEFI Shims Expose Systems to Secure Boot Bypass 2026-07-16 at 10:59 By Ionut Arghire Signed by Microsoft, the vulnerable UEFI shim bootloaders could be abused on any system, regardless of the OS. The post Old UEFI Shims Expose Systems to Secure Boot Bypass appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

Old UEFI Shims Expose Systems to Secure Boot Bypass Read More »

Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities

Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities 2026-07-16 at 09:08 By Eduard Kovacs The cybersecurity companies patched critical and high-severity vulnerabilities in some of their products. The post Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities Read More »

Windows Bind Link Attacks Can Hide Malware From EDR Tools

Windows Bind Link Attacks Can Hide Malware From EDR Tools 2026-07-15 at 16:00 By Kevin Townsend Bitdefender researchers show how Windows bind links can create conflicting filesystem views to hide malware from endpoint security products. The post Windows Bind Link Attacks Can Hide Malware From EDR Tools appeared first on SecurityWeek. This article is an

Windows Bind Link Attacks Can Hide Malware From EDR Tools Read More »

20 open-source cybersecurity tools to keep your team ready for anything

20 open-source cybersecurity tools to keep your team ready for anything 2026-07-08 at 08:30 By Anamarija Pogorelec AI is changing how security teams find vulnerabilities, analyze code, test applications, and protect infrastructure. Developers are building tools to secure AI systems themselves, from coding agents and memory protection to model exposure discovery. This roundup covers recent

20 open-source cybersecurity tools to keep your team ready for anything Read More »

The endpoint recovery gap many teams discover during an incident

The endpoint recovery gap many teams discover during an incident 2026-07-02 at 09:00 By Mirko Zorz In this interview with Help Net Security, IGEL CTO Matthias Haas explains why backups alone do not equal recovery. He makes the case that endpoint recovery is often overlooked, leaving organizations exposed when thousands of devices go down at

The endpoint recovery gap many teams discover during an incident Read More »

‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access

‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access 2026-06-29 at 14:20 By Ionut Arghire A variant of DirtyFrag, the flaw allows unprivileged local users to manipulate the Linux page cache and gain root privileges. The post ‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access Read More »

macOS Weaknesses Chained to Silently Disable Endpoint Security Agents

macOS Weaknesses Chained to Silently Disable Endpoint Security Agents 2026-06-24 at 16:50 By Eduard Kovacs A standard non-admin account is sufficient to conduct an attack that exploits legitimate OS behavior rather than software vulnerabilities. The post macOS Weaknesses Chained to Silently Disable Endpoint Security Agents appeared first on SecurityWeek. This article is an excerpt from

macOS Weaknesses Chained to Silently Disable Endpoint Security Agents Read More »

GentleKiller targets more than 400 security processes across 48 products

GentleKiller targets more than 400 security processes across 48 products 2026-06-18 at 12:00 By Anamarija Pogorelec Most ransomware operations leave the work of disabling endpoint security software to their affiliates. The ransomware-as-a-service gang Gentlemen runs a different model. Its operators develop and maintain a set of tools for shutting down endpoint detection and response (EDR)

GentleKiller targets more than 400 security processes across 48 products Read More »

Endpoint Security Startup Ent Emerges From Stealth With $100 Million Seed Round

Endpoint Security Startup Ent Emerges From Stealth With $100 Million Seed Round 2026-06-16 at 15:53 By SecurityWeek News Ent has developed an intent-aware platform designed to interpret user and agent behavior before risky actions are carried out. The post Endpoint Security Startup Ent Emerges From Stealth With $100 Million Seed Round appeared first on SecurityWeek.

Endpoint Security Startup Ent Emerges From Stealth With $100 Million Seed Round Read More »

Microsoft changes how Defender for Endpoint EDR updates are delivered on Windows

Microsoft changes how Defender for Endpoint EDR updates are delivered on Windows 2026-06-08 at 20:33 By Sinisa Markovic Microsoft will distribute Defender for Endpoint EDR updates through Microsoft Update, enabling EDR security improvements to be released independently of monthly Windows operating system updates. The rollout started for Windows 10 devices in late May 2026 and

Microsoft changes how Defender for Endpoint EDR updates are delivered on Windows Read More »

Critical Vulnerability in HP VoIP Phones Enables Enterprise Network Breaches

Critical Vulnerability in HP VoIP Phones Enables Enterprise Network Breaches 2026-06-02 at 15:25 By Ionut Arghire A stack-based buffer overflow bug can be exploited for remote code execution on a vulnerable device. The post Critical Vulnerability in HP VoIP Phones Enables Enterprise Network Breaches appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

Critical Vulnerability in HP VoIP Phones Enables Enterprise Network Breaches Read More »

Actively exploited Trend Micro Apex One flaw gets CISA warning (CVE-2026-34926)

Actively exploited Trend Micro Apex One flaw gets CISA warning (CVE-2026-34926) 2026-05-26 at 17:32 By Zeljka Zorz A relative directory path traversal vulnerability (CVE-2026-34926) in Trend Micro’s Apex One platform has been exploited in zero-day attacks, the company confirmed. “TrendAI has observed at least one attempt to exploit this vulnerability in the wild,” Trend Micro

Actively exploited Trend Micro Apex One flaw gets CISA warning (CVE-2026-34926) Read More »

Microsoft Rolls Out Mitigations for ‘YellowKey’ BitLocker Bypass

Microsoft Rolls Out Mitigations for ‘YellowKey’ BitLocker Bypass 2026-05-20 at 18:46 By Ionut Arghire The exploitation is mitigated by preventing the FsTx Auto Recovery Utility from starting when the WinRE image launches. The post Microsoft Rolls Out Mitigations for ‘YellowKey’ BitLocker Bypass appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Microsoft Rolls Out Mitigations for ‘YellowKey’ BitLocker Bypass Read More »

Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks

Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks 2026-05-19 at 16:58 By Kevin Townsend Attackers are increasingly abusing Microsoft’s decades-old MSHTA utility to stealthily deliver stealers, loaders, and persistent malware through phishing, fake software downloads, and LOLBIN-based attack chains. The post Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks appeared first

Legacy Windows Tool MSHTA Fuels Surge in Silent Malware Attacks Read More »

PoC Released for DirtyDecrypt Linux Kernel Vulnerability

PoC Released for DirtyDecrypt Linux Kernel Vulnerability 2026-05-19 at 12:47 By Ionut Arghire Patched in April, the underlying vulnerability allows local attackers to elevate their privileges to root. The post PoC Released for DirtyDecrypt Linux Kernel Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

PoC Released for DirtyDecrypt Linux Kernel Vulnerability Read More »

When ransomware hits, confidence doesn’t restore endpoints

When ransomware hits, confidence doesn’t restore endpoints 2026-05-18 at 07:03 By Anamarija Pogorelec Ransomware, supply chain vulnerabilities, insider threats, compliance failures, and software disruptions remain major concerns for security leaders, according to The Ransomware Reality: Zero Days to Recover report by Absolute Security. How CISOs currently ensure endpoint resilience against ransomware (overall, %) (Source: Absolute

When ransomware hits, confidence doesn’t restore endpoints Read More »

Scroll to Top