Intelligence desk
Endpoint Security
A permanent file of Security.io’s selected briefings tagged to this executive theme. It reflects the publication’s curated coverage, not a census of all global activity.
TASK#STOMP turns native Windows tools into a document-theft platformThreat Intelligence
CHOSEN BRICK hunts high-risk Windows usersThreat Intelligence
Pixel modem flaw sees targeted exploitationEndpoint Security
Sogou exploitation delivered GRAYRABBIT through a trusted input toolEndpoint Security
ScreenConnect joins KEV: check clients and remote-session evidenceVulnerability Management
BlueMoon turns the browser patch gap into a shared espionage capabilityThreat Intelligence
Microsoft fixes two Windows zero-days already used for SYSTEM accessVulnerability Management
Fake coding tests turn developer hiring into an espionage pathEndpoint Security
Apple spyware alerts require a high-risk-user incident pathIncident Response
Internet-exposed macOS Screen Sharing is yielding root accessVulnerability Management
Lazarus campaign used a Windows zero-day to suppress endpoint visibilityThreat Intelligence
LightSpy’s new footprint puts routers inside the spyware incident boundaryThreat Intelligence