Skip to main content

Blog

Blog

Catch up on industry news, thought leadership, announcements, and more from Tanium.

Tanium Subscription Center

Get Tanium digests straight to your inbox, including the latest thought leadership, industry news and best practices for IT security and operations.

Subscribe now
Featured image for what is cloud patch management blog post

Cloud patch management is the process of centrally identifying, validating, and deploying operating system and software updates across cloud-based and remote workloads, reducing reliance on on-premises patching infrastructure while helping reduce the security risks associated with unpatched systems.

Ranks of cute little robots in dim light.

As AI agents multiply at machine speed across the enterprise, governance must evolve to match their autonomy, scale, and risk.

Featured image for what is server patch management blog post

Server patch management is the process of identifying, testing, and deploying software updates to close security vulnerabilities in server operating systems and applications.

Featured image for what is mac patch management blog post

Mac patch management is the process of identifying, testing, and deploying software updates across macOS endpoints and third-party applications to reduce the window of exposure before attackers can exploit known vulnerabilities. It's a foundational practice within any enterprise cybersecurity program, particularly as Mac adoption in corporate environments continues to grow.

Tanium Atlas logo hero image

Tanium Atlas brings the power of Tanium to a single prompt: describe what you need, and Atlas acts—with your governance built in.

Featured image for what is a software patch blog post

A software patch is a targeted code update that vendors release to fix cybersecurity flaws, correct bugs, or address performance issues in an existing application or operating system without replacing the software entirely.

Featured image for Tanium + Moveworks + ServiceNow: Showcasing end-to-end incident resolution in a single experience blog post

IT fulfillers typically juggle multiple systems to resolve a single incident: the ticket in ServiceNow, endpoint data in a separate console, and a knowledge base full of prior resolutions. The upcoming Moveworks integration with Tanium changes that. Real-time endpoint intelligence appears directly in the chat window where fulfillers already work, whether that is Slack, Microsoft Teams, or the ServiceNow web experience. The result is a faster, more focused workflow, coming soon through the Service Operations Assistant for Fulfillers, available with Moveworks from ServiceNow.

The Tanium Partner Advantage Program: Built for profitable growth and proven customer outcomes

Tanium Partner Advantage Program updates are designed to recognize, promote, and reward partners for their investment and commitment to driving mutual success with Tanium.

Featured image for Copy Fail (CVE-2026-31431): What Linux administrators need to know now blog post

Copy Fail, or CVE-2026-31431, is a Linux kernel local privilege escalation vulnerability that can let an unprivileged local user corrupt page-cache-backed file data under specific conditions and potentially escalate privileges. Exposure depends on the running vendor kernel and backported fixes. Installing a vendor-provided kernel fix is the primary remediation, with temporary mitigations available in some environments if patching is delayed.

Endpoint grouping strategies for targeted IT operations - Tanium Tech Talks #160 video thumbnail

Computer groups are the unsung foundation of every targeted action in Tanium, and Tanium Product Enablement Architect Jesh Sax delivers a practical, step-by-step walkthrough of how to build, configure, and use them to manage endpoints at scale with precision and control. This episode is part of the Tanium Basics series, which covers the core concepts and building blocks you need to get the most out of the Tanium platform.

Featured image for types of AI agents blog post

AI agents fall into five foundational categories: simple reflex, model-based reflex, goal-based, utility-based, and learning agents. Each is defined by how much environmental awareness and decision-making complexity the system can handle, from fixed condition-action rules to feedback-driven self-improvement.

Featured image for patch management policy blog post

A patch management policy is a formal organizational document that defines how software updates are identified, prioritized, tested, and deployed across an organization's systems to address security vulnerabilities that attackers commonly exploit to gain initial access.