Endpoint Security

How RMM abuse gives attackers a way in that looks like business as usual

How RMM abuse gives attackers a way in that looks like business as usual 2026-10-05 at 07:30 By Sinisa Markovic Huntress found attackers using legitimate remote monitoring and management (RMM) software in 45% of the endpoint-related incidents it recorded in the first quarter of 2026. The security company also ranked 11 attack tactics by how […]

How RMM abuse gives attackers a way in that looks like business as usual Read More »

New Spectre v2 Variant Exposes Intel, AMD, Arm CPUs to Data Leaks

New Spectre v2 Variant Exposes Intel, AMD, Arm CPUs to Data Leaks 2026-09-29 at 20:00 By Eduard Kovacs Branch Target Reuse (BTR) is a new Spectre v2 attack targeting JIT compilers in web browsers, language runtimes, and the operating system kernel The post New Spectre v2 Variant Exposes Intel, AMD, Arm CPUs to Data Leaks […]

New Spectre v2 Variant Exposes Intel, AMD, Arm CPUs to Data Leaks Read More »

Windows, Linux, Android File Notification Systems Leak User Activity

Windows, Linux, Android File Notification Systems Leak User Activity 2026-09-25 at 13:53 By Eduard Kovacs Researchers show that file-change notification systems can leak keystroke timing, browsing activity, and WhatsApp media events. The post Windows, Linux, Android File Notification Systems Leak User Activity appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

Windows, Linux, Android File Notification Systems Leak User Activity Read More »

Check Point, Kaspersky, Tanium Patch Product Vulnerabilities

Check Point, Kaspersky, Tanium Patch Product Vulnerabilities 2026-09-18 at 10:14 By Eduard Kovacs Check Point Security Management and Log Servers are affected by a critical vulnerability that can allow remote code execution with root privileges. The post Check Point, Kaspersky, Tanium Patch Product Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek […]

Check Point, Kaspersky, Tanium Patch Product Vulnerabilities Read More »

Webinar Today: Keep Pace With AI – A New Operating Model for Endpoint Remediation

Webinar Today: Keep Pace With AI – A New Operating Model for Endpoint Remediation 2026-09-10 at 16:30 By SecurityWeek News Join the webinar for a focused, 20-minute discussion on Frontier Pace Governance, an approach to balancing automation, policy, and business risk as IT operations accelerate. The post Webinar Today: Keep Pace With AI – A New Operating Model […]

Webinar Today: Keep Pace With AI – A New Operating Model for Endpoint Remediation Read More »

New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defender

New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defender 2026-09-10 at 10:09 By Ionut Arghire The exploit provides full System privileges on Windows machines running the September 2026 patches. The post New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defender appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

New ‘ShieldCrash’ Zero-Day Exploit Targets Microsoft Defender Read More »

Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit

Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit 2026-08-31 at 17:32 By Eduard Kovacs Kaspersky told SecurityWeek that it patched the vulnerability affecting its Endpoint Security product. The post Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit Read More »

Microsoft, Apple Release Fresh Security Updates

Microsoft, Apple Release Fresh Security Updates 2026-08-07 at 12:09 By Ionut Arghire Microsoft fixed critical vulnerabilities across Azure, Entra, and SharePoint, while Apple patched a high-severity authentication bypass. The post Microsoft, Apple Release Fresh Security Updates appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Microsoft, Apple Release Fresh Security Updates Read More »

Elastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM support

Elastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM support 2026-08-03 at 11:31 By Mirko Zorz Attackers reaching for kernel access on a Windows machine bring a driver Microsoft already trusts. It is signed, it loads, and it carries a known flaw. That flaw gives them enough room to tamper with memory […]

Elastic Defend now covers 800+ vulnerable drivers, with automated troubleshooting and ARM support Read More »

ThreatLocker Raises $190 Million in Series F Funding

ThreatLocker Raises $190 Million in Series F Funding 2026-07-29 at 15:17 By Eduard Kovacs The company was previously valued at $1.6 billion, and the latest raise has significantly increased that valuation. The post ThreatLocker Raises $190 Million in Series F Funding appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

ThreatLocker Raises $190 Million in Series F Funding Read More »

Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe

Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe 2026-07-28 at 17:19 By Eduard Kovacs Apple announced that dozens of vulnerabilities have been patched in each of its operating systems. The post Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

Apple Patches 87 Vulnerabilities in iOS, 155 in macOS Tahoe Read More »

Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation

Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation 2026-07-22 at 13:00 By Ionut Arghire Using AI, the startup provides adaptive prevention through environment mapping, risk analysis, and automated policy enforcement. The post Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation appeared first on SecurityWeek. This article is […]

Endpoint Security Firm Glow Launches With $180M in Funding at $1.2B Valuation Read More »

Old UEFI Shims Expose Systems to Secure Boot Bypass

Old UEFI Shims Expose Systems to Secure Boot Bypass 2026-07-16 at 10:59 By Ionut Arghire Signed by Microsoft, the vulnerable UEFI shim bootloaders could be abused on any system, regardless of the OS. The post Old UEFI Shims Expose Systems to Secure Boot Bypass appeared first on SecurityWeek. This article is an excerpt from SecurityWeek […]

Old UEFI Shims Expose Systems to Secure Boot Bypass Read More »

Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities

Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities 2026-07-16 at 09:08 By Eduard Kovacs The cybersecurity companies patched critical and high-severity vulnerabilities in some of their products. The post Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities Read More »

Windows Bind Link Attacks Can Hide Malware From EDR Tools

Windows Bind Link Attacks Can Hide Malware From EDR Tools 2026-07-15 at 16:00 By Kevin Townsend Bitdefender researchers show how Windows bind links can create conflicting filesystem views to hide malware from endpoint security products. The post Windows Bind Link Attacks Can Hide Malware From EDR Tools appeared first on SecurityWeek. This article is an […]

Windows Bind Link Attacks Can Hide Malware From EDR Tools Read More »

20 open-source cybersecurity tools to keep your team ready for anything

20 open-source cybersecurity tools to keep your team ready for anything 2026-07-08 at 08:30 By Anamarija Pogorelec AI is changing how security teams find vulnerabilities, analyze code, test applications, and protect infrastructure. Developers are building tools to secure AI systems themselves, from coding agents and memory protection to model exposure discovery. This roundup covers recent […]

20 open-source cybersecurity tools to keep your team ready for anything Read More »

The endpoint recovery gap many teams discover during an incident

The endpoint recovery gap many teams discover during an incident 2026-07-02 at 09:00 By Mirko Zorz In this interview with Help Net Security, IGEL CTO Matthias Haas explains why backups alone do not equal recovery. He makes the case that endpoint recovery is often overlooked, leaving organizations exposed when thousands of devices go down at […]

The endpoint recovery gap many teams discover during an incident Read More »

‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access

‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access 2026-06-29 at 14:20 By Ionut Arghire A variant of DirtyFrag, the flaw allows unprivileged local users to manipulate the Linux page cache and gain root privileges. The post ‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access appeared first on SecurityWeek. This article is an excerpt from SecurityWeek […]

‘DirtyClone’ Linux Kernel Vulnerability Leads to Root Access Read More »

macOS Weaknesses Chained to Silently Disable Endpoint Security Agents

macOS Weaknesses Chained to Silently Disable Endpoint Security Agents 2026-06-24 at 16:50 By Eduard Kovacs A standard non-admin account is sufficient to conduct an attack that exploits legitimate OS behavior rather than software vulnerabilities. The post macOS Weaknesses Chained to Silently Disable Endpoint Security Agents appeared first on SecurityWeek. This article is an excerpt from […]

macOS Weaknesses Chained to Silently Disable Endpoint Security Agents Read More »

GentleKiller targets more than 400 security processes across 48 products

GentleKiller targets more than 400 security processes across 48 products 2026-06-18 at 12:00 By Anamarija Pogorelec Most ransomware operations leave the work of disabling endpoint security software to their affiliates. The ransomware-as-a-service gang Gentlemen runs a different model. Its operators develop and maintain a set of tools for shutting down endpoint detection and response (EDR) […]

GentleKiller targets more than 400 security processes across 48 products Read More »

Scroll to Top