build 170e8793 | content blog-content@c8490fa · 338 posts | profiles 20 · corpus 232 | 0 skipped |
Solution · VMware

Endpoint Security

Devices left the company network faster than they were secured. Two products cover this, and choosing between them is rarely the hard part.

VMware Pinnacle Partner · soultec.ch/partner, verbatim

Topics capabilities · idf weight Endpoint Security endpoint-security 3.40 Security security 2.14
Vendors vendors · idf weight VMware vmware 0.93 Microsoft microsoft 3.10
04Services
06Posts
02Capabilities
232Corpus

Why this is its own category

Devices left the company network, and not everywhere was securing them thought through first. Most attacks now use techniques like lateral movement and island hopping: they do damage through tools that are already permitted on the machine. A scanner comparing files against a list sees none of it.

What these products do differently

VMware Carbon Black and Microsoft Defender read system events to learn what normal activity looks like in an estate. What stands out is then not the file but the sequence: why is this Office document starting PowerShell.

Much of the value is in the recording. After an incident you can reconstruct what happened, and that is the difference between “we had something” and “we know what we had”.

The question that actually matters

Which of the two fits is usually settled by existing licensing rather than by detection rates. The harder question comes after: who is looking. EDR with nobody assigned to it is a data store.

Posts about it

VMware Security Advisory

Broadcom has disclosed a new vulnerability, covered by VMware Security Advisory 2024-0019. The issues are rated 7.5 to 9.8 on the CVSS scale.

2024-09-18 · posts/vmware-security-advisory.md · 133 words · 1 min · daniel-stadelmann

Security security 2.14

VMware Security Advisory

VMware has disclosed a new vulnerability, covered by VMware Security Advisory 2024-0012. The issues are rated 7.8 to 9.8 on the CVSS scale.

2024-06-19 · posts/vmware-security-advisory-vmsa-2024-0012.md · 129 words · 1 min · daniel-stadelmann

Security security 2.14

VMware Security Advisory

VMware has disclosed new vulnerabilities, covered by VMware Security Advisory 2022-0030 and 2021-0025. They are rated 7.1 to 7.5 on the CVSS scale.

2022-12-09 · posts/vmware-security-advisory-vmsa-2022-0030.md · 128 words · 1 min · dario-doerflinger

Security security 2.14

VMware Security Advisory

VMware has disclosed new vulnerabilities in VMware Security Advisory 2022-0021. They are rated 4.7 to 9.8 on the CVSS scale.

2022-08-05 · posts/vmware-security-advisory-2022-021.md · 107 words · 1 min · dario-doerflinger

Security security 2.14

Renew the STS Signing Root Certificate in vCenter

I recently had a call from a customer that received multiple alerts about their ESXi Hosts certificate was about to expire.

2025-05-23 · posts/how-to-renew-the-sts-signing-root-certificate-in-vcenter.md · 357 words · 2 min · dario-doerflinger

Virtualization virtualization 1.54 Security security 2.14

Broadcom Download Token

From now on your vCenter or SDDC Manager needs a unique token. Without it, from the end of April 2025, no patches for VMware software will download any more.

2025-04-14 · posts/how-to-broadcom-download-token.md · 176 words · 1 min · daniel-stadelmann

Virtualization virtualization 1.54 Security security 2.14

Who works with it