Tanium has relaunched its Security Operations platform, aiming at a threat model where attackers use legitimate administrative tools to look like normal activity. The company says the approach is designed for AI-assisted attacks that spread across endpoints, and the platform is meant to detect that behavior and support response across affected systems.
The updated offering includes endpoint behavior detection and AI-assisted threat hunting. Instead of focusing only on known indicators of compromise, the platform is built to spot suspicious behavior even when it comes from trusted admin tools. That matters because adversaries increasingly blend in with routine operations.
No other sources were included in this brief, so the claims reflect Tanium's announcement rather than independent testing or third-party analysis.