Topic
Tanium Blog

Axios npm package compromise: What happened, what matters, and how to respond
Learn what happened with the Axios npm package vulnerability, how to confirm exposure to malicious versions, and how Tanium Guardian can help investigate.

Claude Code source exposure: What enterprises should do next
Inside the npm packaging mistake that exposed half a million lines of Claude Code.

Tanium at RSAC 2026: Bringing Autonomous IT to cybersecurity’s biggest week
We brought the message of Autonomous IT to the leading security show, and people took notice.

CVE‑2025‑47813: Wing FTP Server vulnerability flagged by CISA
CISA KEV‑listed CVE‑2025‑47813 exposes Wing FTP Server install paths used in attack chains. Learn which versions are affected and how to remediate.

Fueling Innovation: Inside Tanium’s Exclusive Partner Innovators of Tanium (PIT) Community
Learn more about how the Partner Innovators of Tanium, or PIT Crew, is an exclusive community of talented partners instrumental in driving Tanium’s success.

Why our AI world demands a remediation-first approach to exposure management
Explore how a remediation‑first model turns exposure data into meaningful risk reduction in an AI world.

What is a vulnerability assessment?
Read this vulnerability assessment guide to learn how to identify assets, uncover weaknesses, and prioritize risk before attackers exploit known gaps.

Why EDR isn't enough on its own
Security teams don’t struggle because they lack tools. Most have plenty. What they struggle with is confidence. Confidence that they’ve seen the full scope of an incident, that nothing was missed, and that the threat is truly eliminated.

What is threat and vulnerability management? Essential cybersecurity guide
Learn what threat and vulnerability management is, how TVM connects threats to exposure, and why risk‑based prioritization matters for security teams.

What is AI compliance?
Learn what AI compliance means in 2026, key risks and regulations, and why real‑time visibility and guardrails are essential for secure, responsible AI at scale.

A Supply Chain Attack in Notepad++
The Notepad++ update process was compromised by a supply chain attack, and users are strongly advised to upgrade to version 8.8.9 or later to ensure their security.

What is a security patch?
A security patch is a software update that fixes a vulnerability (like an exploitable bug or design flaw) in software to protect it from cyberattacks. Applying security patches is an essential practice for bolstering cybersecurity, reducing risk, and ensuring compliance.