Blog
Blog
Catch up on industry news, thought leadership, announcements, and more from Tanium.
Tanium Subscription Center
Get Tanium digests straight to your inbox, including the latest thought leadership, industry news and best practices for IT security and operations.

Understanding continuous threat exposure management (CTEM)
Continuous threat exposure management, or CTEM, is a five-stage program framework for continuously reducing real-world security exposure. It builds on vulnerability scanning by adding risk-informed prioritization, validation of exposure conditions and control effectiveness, and cross-team mobilization to drive remediation.

Tanium at the Gartner Security & Risk Management Summit 2026
As security leaders prepare to tackle the industry’s most urgent priorities, Tanium will bring the real-time intelligence and agentic AI capabilities needed to close the gap between insight and execution.

The lessons of Knowledge 2026: AI, trust, and the road to autonomous IT
Tanium Global ServiceNow CIO & VP Saqib Khan discusses how the high-energy event prepared attendees to operate with speed and confidence.

May 2026 GitHub breach: Extension hygiene is still a challenge–so what can we do about it?
On May 20, 2026, GitHub disclosed that an employee device was compromised through a malicious VS Code extension, with attackers claiming to have exfiltrated roughly 3,800 internal repositories.

What endpoint security management actually is and what it isn't
Endpoint security management is the centralized IT and security discipline of discovering, monitoring, and controlling all devices on an enterprise network, including laptops, servers, mobile devices, and IoT hardware, to reduce unauthorized access and limit how far threats can travel once inside.

Security teams are solving the wrong visibility problem
AI has expanded the threat surface, the estate, and the cost of not seeing clearly—all at once.

Tanium Interact essentials: Endpoint query and live data access - Tanium Tech Talks #161
From building sensor-based questions to AI-powered query assistance, Tanium Senior Enterprise Engineer Tom Dowdeswell delivers a comprehensive walkthrough of how to use Tanium Interact to its fullest potential.

See resilience at scale at Converge World Tour
A preview of the conversations coming to Converge London and Paris this May — and why they matter beyond the event floor.

Mini Shai-Hulud supply chain attack: Why this campaign changes how defenders should think about trusted software
The Mini Shai-Hulud supply chain attack compromised more than 170 packages across npm and PyPI, including packages from TanStack, Mistral AI, and Guardrails AI, by hijacking legitimate CI/CD publishing workflows to distribute malicious versions that still carried apparently valid provenance signals.

10 steps to trusted, validated autonomous IT
Autonomous IT changes the standard endpoint management model to match today's speed and scale while reducing risk and operational cost.

Is Windows Autopatch ready for enterprise use, or does it trade too much control for convenience?
Windows Autopatch is a Microsoft service, included with Windows Enterprise E3 and above, that automates the scheduling and deployment of Windows quality updates, driver updates, and Microsoft 365 app updates across Intune-managed devices. It reduces the manual overhead of patch scheduling by managing update rings and cadence on your behalf, but it does so by abstracting away the granular controls that enterprise patch management workflows typically depend on.

What are vulnerability scanning tools? A guide for enterprise security teams
Vulnerability scanning tools are software solutions that assess networks, systems, and applications for known security weaknesses, misconfigurations, and unpatched software by comparing observed state against vulnerability intelligence.