Topic
Tech News

Introducing Agentic SecOps: Live Endpoint Truth for the AI-Driven SOC
Agentic SecOps changes the operating model: with Tanium Atlas, security teams can direct work in natural language, reason over live endpoint data, and keep humans in control.

Tanium Atlas: One operator. The full weight of the platform.
Tanium Atlas is generally available to every commercial and U.S. Government cloud customer. Here's what changes for the operators doing the work in an AI threat landscape, and why I wanted to write this one myself.

See the full attack surface. Act on what actually matters.
CVE volumes are climbing, AI-discovered threats are multiplying, and visibility across the full attack surface remains fragmented. Bolt-on solutions and manual handoffs simply can't keep pace. Organizations who are getting ahead share one thing in common: they've replaced fragmented workflows with AI-powered prioritization and autonomous remediation across a unified view of both internal and external risk.

Mapping threats with Tanium Threat Navigator for faster response - Tanium Tech Talks #164
Threat hunting at enterprise scale gets a structured, repeatable workflow upgrade as Tanium Senior Threat Hunter Duncan Miller walks through Tanium Threat Navigator, a new capability inside Threat Response that transforms iterative hunts into shareable, actionable intelligence.

Governing AI-driven infrastructure: When AI handles 80% of the work, who owns the other 20%?
AI is reshaping DevOps and platform engineering by automating routine implementation work such as pipeline generation, container configuration, and assisting with Kubernetes issue resolution that once required deep hands-on expertise. The critical question for enterprise teams isn't whether AI can support this work, but whether humans still understand what actually occurred and have the right controls in place to catch problems before they propagate.

Is platform engineering just DevOps with a new name, or is something operationally different happening?
Platform engineering is the practice of building and maintaining a centralized internal developer platform (IDP), a curated set of tools, workflows, and self-service capabilities that application teams consume rather than configure on their own. It's a structural response to how DevOps practices evolve at scale, particularly when "you build it, you run it" introduces more cognitive load than individual development teams can sustainably manage.

Critical Netlogon RCE on domain controllers (CVE-2026-41089)
A critical, unauthenticated remote code execution vulnerability in Windows Netlogon (CVE-2026-41089, CVSS 9.8) lets a remote attacker run code as SYSTEM on a domain controller. Patch all domain controllers in the same maintenance window with the May 2026 security updates.

Mapping enterprise IT infrastructure with Tanium Atlas - Tanium Tech Talks #163
Tanium Senior Director of Product Management and Portfolio Lead Steven Yang walks through Tanium Atlas, an AI-driven experience that replaces fixed module navigation with natural language prompts, dynamic composable pages, and agentic workflows, fundamentally changing how IT and security teams interact with endpoint data.

AI-powered endpoint enrichment and analysis for IT security - Tanium Tech Talks #162
Tanium HuntIQ Hunter Duncan Miller demonstrates how AI-powered enrichment and analysis features inside Threat Response are transforming the way security teams decode commands, contextualize alerts, and act on findings, all without leaving the console.

May 2026 GitHub breach: Extension hygiene is still a challenge–so what can we do about it?
On May 20, 2026, GitHub disclosed that an employee device was compromised through a malicious VS Code extension, with attackers claiming to have exfiltrated roughly 3,800 internal repositories.

Tanium Interact essentials: Endpoint query and live data access - Tanium Tech Talks #161
From building sensor-based questions to AI-powered query assistance, Tanium Senior Enterprise Engineer Tom Dowdeswell delivers a comprehensive walkthrough of how to use Tanium Interact to its fullest potential.

Mini Shai-Hulud supply chain attack: Why this campaign changes how defenders should think about trusted software
The Mini Shai-Hulud supply chain attack compromised more than 170 packages across npm and PyPI, including packages from TanStack, Mistral AI, and Guardrails AI, by hijacking legitimate CI/CD publishing workflows to distribute malicious versions that still carried apparently valid provenance signals.