The Tool Desk
Outbyte PC Repair FREERepair Windows errors before they cause bigger problemsFix Now →Outbyte Driver Updater FREEScan for outdated or missing drivers - takes under a minuteDriver Scan →On June 22, 2023, Tanium announced updates to its Vulnerability Management and Risk & Compliance capabilities, including software bill of materials (SBOM) data with CVE information, broader ARM endpoint support, and several assessment and reporting features. The announcement describes what Tanium said it released then; it does not establish that every feature or support detail remains unchanged today.
What Tanium added to Vulnerability Management
Tanium said it added SBOM capability, including Common Vulnerabilities and Exposures (CVE) information, to Vulnerability Management. The company described the feature as identifying software components on endpoints, including open-source libraries embedded in native and third-party applications. Tanium said this could help organizations identify, prioritize, and remediate emerging and zero-day vulnerabilities across endpoints. Those are the vendor’s descriptions of the capability and its intended benefits, not independent test findings. Tanium’s June 22, 2023 announcement did not explain the feature’s technical coverage or update cadence.
SBOM data can make a component-level question easier to investigate: whether a software component associated with a vulnerability is present on an endpoint, even when that component is embedded inside another application. The announcement does not establish that the feature detects every component or vulnerability, nor does it provide a complete remediation workflow specification.
How Tanium framed the need
In the release, Tanium chief product officer Nic Surpatanu said, “Federal agencies, cyber insurance providers, and other organizations are increasingly requiring an SBOM for all utilized software.” The statement was not accompanied by a cited study or measure of how widespread such requirements were.
Do these 3 things before closing this tab:
1Fix the driver behind crashes, sound loss and screen glitches2Repair Windows errors before they cause bigger problems3Scan for outdated or missing drivers - takes under a minute#1 Best Overall
- SonicWall TZ270W Appliance Only - No Service Subscription (02-SSC-2823) - Combines enterprise-grade firewalling with integrated 802.11ac Wave 2 Wi-Fi to deliver secure wired and wireless connectivity in one compact device for small offices and clinics.
- Blocks zero-day threats and ransomware with Capture ATP sandboxing enhanced by RTDMI, plus IPS and anti-malware scanning for layered protection.
- Eliminates the need for separate access points in smaller spaces thanks to built-in high-speed wireless that is simple to deploy and manage.
- Supports VPN, SD-WAN, and TLS 1.3 decryption to secure hybrid cloud access and remote workers while maintaining usability and performance.
- Delivers gigabit performance with up to 750,000 concurrent connections to handle growth in users, devices, and SaaS applications.
Surpatanu also said that “Over ninety-two percent of applications contain open-source libraries that may contain hidden vulnerabilities like Log4j, OpenSSL, or Struts, which are exploited by attackers.” Tanium’s release did not provide the underlying study or methodology, so this should be read as a company-published statistic, not an independently verified rate.
Which ARM endpoints the announcement named
Tanium said it extended support to ARM-based endpoints running Oracle Linux, Red Hat, and Windows 11. It also said support for Apple and Amazon ARM processors had been rolled out in 2022. The announcement does not identify processor models, exact operating-system versions, prerequisites, or regional availability. Those specifics should be confirmed in Tanium’s current technical documentation before using the announcement to make a compatibility decision.
Rank #2
- Watchguard Tech WG50021 Firebox X20e-Wireless
Tanium cited ARM adoption as context for the update. Its 2023 release said ARM-based server use grew sevenfold between 2019 and 2022, without naming a data source or method. It also forecast that ARM-based computers would account for 30% of personal computers by 2026. That was a forecast made in 2023, not a verified outcome in this announcement. Tanium executive Vivek Bhandari attributed expected future growth to “better performance and lower energy usage compared to x86-based processors”; this is his stated rationale, not a comparative test result.
Other Risk & Compliance changes
The release listed four additional changes. Tanium presented them as product capabilities; it did not provide detailed configuration instructions or release-specific technical requirements.
Rank #3
- XGS 88 with 3 Years Standard Protection - Next-generation firewall appliance with Standard Protection subscription providing firewall, VPN, intrusion prevention, web security, and application control, managed through Sophos Central for unified policies and reporting.
- Equipped with 4 x 2.5 GE copper ports, supporting up to 9.9 Gbps firewall performance for small offices and branch deployments.
- Protects users from ransomware, malware, phishing, and intrusion attempts before they reach endpoints or applications.
- SD-WAN features deliver reliable, optimized application performance and intelligent multi link failover.
- Includes Standard Protection – Comprehensive security package with firewall, intrusion prevention, VPN, web security, and application control to defend against everyday threats and keep business operations safe.
- ESX and ESXi assessments: Assessment of hypervisors through vCenter APIs.
- CISA Known Exploited Vulnerabilities (KEV) information: Tanium said this information would appear in vulnerability assessments to help prioritize high-risk CVEs for remediation. KEV information is distinct from the CVE information described in the SBOM update: the release does not say that every CVE is known to be exploited.
- Finding exceptions: Exception management for compliance and vulnerability findings, with a reason or expiration date.
- Tanium Benchmark page: A new page to visualize operational and security metrics.
What the announcement means for current product status
The 2023 release is a dated account of announced changes, not a current compatibility matrix or proof that all listed details are still available in the same form. Tanium’s current Threat Response page describes live endpoint intelligence, investigation, proactive hunting, and remediation. It also describes a single Tanium agent supporting endpoint management and security together, and says Threat Response can augment existing tools. These are current vendor descriptions and should not be conflated with every feature in the 2023 announcement.
For an implementation or purchase decision, verify present-day operating-system and processor support, feature availability, prerequisites, and workflow details in current Tanium documentation. The announcement itself does not supply those particulars.
How to evaluate the announced capabilities
The release does not compare Tanium with other products, so it cannot support a conclusion that one platform is better than another. An organization evaluating endpoint vulnerability or response tools can use the announcement as a list of capabilities to verify, then assess platforms against practical requirements:
Quick Recap
- Which operating-system versions and processor architectures are supported now?
- How are software components and vulnerability data collected, refreshed, and mapped to endpoints?
- How does the product prioritize findings, including vulnerabilities identified in CISA’s KEV catalog, and what remediation actions can teams take?
- How do exceptions record justification and expiry, and how are overdue exceptions surfaced?
- What integrations, deployment prerequisites, operational workflows, and costs apply?
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.
Recommended Free Tools

