SecurityBrief India - Technology news for CISOs & cybersecurity decision-makers
India
Indian Edition · 2026

The Ultimate Guide to Endpoint Detection and Response

A curated Indian edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Endpoint Detection and Response (EDR).

What to know about Endpoint Detection and Response

Endpoint Detection and Response (EDR) is a critical component in modern cybersecurity strategies, focusing on the real-time detection, investigation, and mitigation of cyber threats targeting endpoints such as laptops, desktops, servers, and mobile devices. As cyber threats evolve in complexity and frequency, organizations increasingly rely on EDR solutions to gain deeper visibility and improve response times against sophisticated attacks.

The recent stories under this tag highlight advancements in EDR technologies, including integrations with AI and machine learning to enhance threat detection capabilities. They demonstrate the growing adoption of extended detection and response (XDR) platforms, which unify multiple security components to provide a broader scope of protection across networks, cloud workloads, and endpoints. Readers will find discussions on evolving challenges like ransomware surges, insider threats, and the rising importance of proactive security measures. Insights into the partnerships, product launches, and industry analyses offer valuable perspectives for IT professionals seeking to strengthen their organization’s cybersecurity posture through effective endpoint protection and response strategies.

Indian Endpoint Detection and Response News

Regional stories with direct local relevance

Analyst Insights

Research and market analysis connected to Endpoint Detection and Response

Expert Columns

Interviews

Interviews and video coverage from the network

Recent Endpoint Detection and Response News

Gentlemen ransomware gang supplies EDR killers to affiliates
Threat intelligence

Gentlemen ransomware gang supplies EDR killers to affiliates

ESET says the gang's operator-backed toolkit could help affiliates bypass defences faster, widening the threat to businesses worldwide.

Today

Pathlock & NTT DATA launch global SAP cyber service
Managed Services

Pathlock & NTT DATA launch global SAP cyber service

Enterprises running SAP may gain around-the-clock protection as the partners target ransomware, fraud and staffing gaps in ERP security.

Last week

GitGuardian launches endpoint protection for laptops
Security Operations Centres

GitGuardian launches endpoint protection for laptops

A single compromised laptop can expose thousands of live keys, according to GitGuardian's early field tests, as attacks shift to developer machines.

Last week

Ent raises USD $100 million seed round led by Decibel
Security Operations Centres

Ent raises USD $100 million seed round led by Decibel

The funding underscores investor demand for AI-focused cybersecurity tools as enterprises face new endpoint risks from human users and agents.

Last week

New China-linked OP-512 cluster targets old IIS servers
Threat intelligence

New China-linked OP-512 cluster targets old IIS servers

Older, internet-facing IIS servers are being singled out by China-linked hackers, with one new cluster able to persist despite partial containment.

This month

Arms Cyber launches AI policy enforcement for endpoints
Disaster Recovery

Arms Cyber launches AI policy enforcement for endpoints

The new feature targets shadow AI on laptops and desktops, helping security teams block data leaks before models can access sensitive files.

This month

Agentic AI can move data in under 30 minutes: DTEX
Threat intelligence

Agentic AI can move data in under 30 minutes: DTEX

Enterprise security teams face a new visibility gap as approved AI agents can copy and transfer sensitive data in under 30 minutes.

This month

Barracuda flags stealthy Microsoft 365 attack shift
Threat intelligence

Barracuda flags stealthy Microsoft 365 attack shift

Businesses are facing harder-to-spot intrusions as attackers use valid Microsoft 365 logins, fake AI sites and fileless malware to evade detection.

Last month

Conifers launches AI platform to unify SOC workflow
IT service management

Conifers launches AI platform to unify SOC workflow

Security teams could cut response times as the new platform links threat intelligence, hunting and remediation across existing tools.

Last month

ReliaQuest warns of SonicWall MFA bypass after patching
Threat intelligence

ReliaQuest warns of SonicWall MFA bypass after patching

Patching alone has left some older SonicWall devices exposed to VPN attacks, with reliaQuest finding the first known in-the-wild use of CVE-2024-12802.

Last month

ManageEngine rolls out autonomous AI agents across suite
IT service management

ManageEngine rolls out autonomous AI agents across suite

The move gives IT teams autonomous agents for service desks, security and endpoint work, while ManageEngine says customer data stays private.

Last month

ThreatDown launches identity threat detection & response
Managed Services

ThreatDown launches identity threat detection & response

Stolen credentials and post-login attacks are pushing security teams to seek unified monitoring across endpoints and identities.

Last month

Omnissa adds Windows Server management to Workspace ONE
Workplace

Omnissa adds Windows Server management to Workspace ONE

Omnissa expands Workspace ONE with Windows Server management, aiming to cut costs and simplify IT operations with one cloud console.

Last month

10ZiG, Parallels expand partnership for hybrid work
Cloud Services

10ZiG, Parallels expand partnership for hybrid work

10ZiG and Parallels broaden partnership to offer secure virtual applications and desktops for hybrid work, cutting endpoint costs and complexity.

Last month

BlackFog says only one in nine ransomware attacks go public
Firewalls

BlackFog says only one in nine ransomware attacks go public

Undisclosed attacks outnumbered public cases by nine to one, with healthcare and government still bearing the brunt of the ransomware threat.

Last month

OpenAI launches GPT-5.5-Cyber for vetted defenders
Firewalls

OpenAI launches GPT-5.5-Cyber for vetted defenders

Vetted security teams will get fewer refusals on authorised tasks as OpenAI tightens access around its most permissive cyber model.

Last month

Asia Pacific firms broaden AI PC & workstation use
Network Infrastructure

Asia Pacific firms broaden AI PC & workstation use

Nearly half of larger Asia Pacific firms have deployed AI PCs, while 95% expect workstations to be vital for AI work within two years.

Last month

Tanium & ServiceNow launch autonomous IT product
IT service management

Tanium & ServiceNow launch autonomous IT product

Live endpoint data will now feed ServiceNow workflows, aiming to cut incident response times and automate patching across large fleets.

Last month

Tanium, ServiceNow launch autonomous IT operations tool
IT service management

Tanium, ServiceNow launch autonomous IT operations tool

The tie-up aims to cut investigation times and patching errors by feeding live endpoint data into ServiceNow workflows and AI agents.

Last month

Job Moves