When a new cyber threat makes headlines, security teams everywhere scramble to assess their exposure and respond. Tanium Guardian is designed to cut through the chaos, providing expert-curated dashboards that surface vulnerabilities and persistent risks in real time, so organizations can act before attackers do.
In this episode, Tyler Schultz returns to Tech Talks to introduce two new Guardian dashboards: one for the Windows SMB Client Elevation of Privilege vulnerability (CVE-2025-33073), and another for remote monitoring and management (RMM) tools. Tyler shows how these dashboards help customers quickly understand their risk, take action, and stay ahead of evolving threats.
Tanium’s approach goes beyond surfacing alerts to deliver actionable context, remediation guidance, and hands-on tools that make security manageable, even for resource-strapped teams. Whether you’re a seasoned security leader or a junior analyst, Guardian dashboards are built to empower you with the information and automation you need to protect your environment.
Ready to see how Tanium Guardian can help you spot the next big risk and respond with confidence? Watch the full episode below to learn how these new dashboards work, hear real-world customer stories, and get practical tips for defending your organization.
Key takeaways
- Tanium Guardian delivers expert-curated, actionable risk content: Guardian surfaces emerging vulnerabilities and persistent risks, providing dashboards that help organizations quickly assess exposure and take recommended actions.
- SMB Client Elevation of Privilege vulnerability explained: The new dashboard addresses CVE-2025-33073, a Windows SMB bug that could allow attackers to escalate privileges. Guardian provides background, technical analysis, and step-by-step mitigation and remediation guidance.
“Anytime there’s an emerging issue, vulnerability, or a particular persistent risk... Guardian will produce content that helps you scope that particular aspect of risk, and then we’ll give you recommendations and the ability to take action from a dashboard.”Tanium Director, Security & Product Design Research Tyler Schultz
- Real-world customer success stories highlight Guardian’s impact: Customers have used Guardian dashboards to discover unknown vulnerabilities, sometimes on platforms they didn’t realize were affected, and to respond rapidly even before leadership is aware of the threat.
“We’ve heard [using a Guardian dashboard] is like the Easy Button... especially when sometimes the CIO or CISO is maybe like a day or half a day behind the news... and we already had a dashboard out for them that showed them here’s the state of the state, and here’s what we could do about it.”Tanium Director, Security & Product Design Research Tyler Schultz
- SMB dashboard provides deep visibility and one-click remediation: The dashboard checks SMB signing configuration, patch levels, and OS versions, highlighting unpatched endpoints and making it easy to apply mitigations or patches, even accounting for configuration quirks after OS upgrades.
- RMM dashboard shines a light on legitimate tools that can be abused: Guardian identifies installed and recently run RMM tools (like TeamViewer, RustDesk, AnyDesk), flags anomalies, and offers uninstall and blocking options to help teams spot and remove unauthorized remote access.
“We comb through about two or three years’ worth of intel reporting on what RMMs have been used and abused by threat actors... combined with the RMM list that’s publicly available… and we cross-referenced our own findings with their list to build the list that we’re looking for.”Tanium Director, Security & Product Design Research Tyler Schultz
- Integrated automation and guidance for defense in depth: Guardian dashboards link to Tanium Patch, Deploy, Enforce, and Threat Response modules, enabling automated remediation, blocking, and even endpoint reactions to kill malicious processes or quarantine endpoints.
Additional resources
- Watch the related Tech Talks: Automate threat response using Endpoint Reactions and Mastering post-breach response
- Learn more about CVE-2025-33073 and Tanium Guardian signals for RMM (login required)
- Read the Joint Cyber Defense Collaborative defense plan for RMM software
- Discover how Tanium and ScreenMeet deliver secure, integrated remote support
