•
3 min readRemediating Windows vulnerabilities with a single tool
Vulnerability Management is now available for Windows. Find, prioritize, and patch in one place, the same way you do for Mac.
•
3 min readVulnerability Management is now available for Windows. Find, prioritize, and patch in one place, the same way you do for Mac.
•
10 min read
•
6 min read
•
3 min readIf you spent part of last weekend fielding Slack messages about hdiutil, you're not alone. Jeff Johnson's lapcatsoftware.com blog flagged that the man page for hdiutil in the macOS 27 Golden Gate beta now carries a deprecation notice:
•
6 min readEvery fall, Apple’s newest operating systems arrive everywhere at once. That’s great for users, but it puts IT teams on the clock: they need to validate the release, find blockers, prepare their support teams, and decide when the business is ready to move.
•
9 min readMac endpoint security combines built-in macOS protections with centralized tools that help you monitor devices, enforce policies, detect threats, and respond quickly across your entire fleet. Built-in macOS security features like Gatekeeper and XProtect provide a strong foundation, but they don't offer the visibility, automation, threat detection, or behavior detection needed to secure Mac devices at scale. Layering third-party tools such as endpoint management, endpoint detection and response (EDR), and vulnerability management closes those gaps. With Iru, you can manage and remediate your Mac fleet from a single AI-powered platform, giving your IT and security teams more time and control. Your Mac fleet grows one device at a time. Then, almost overnight, you're supporting remote employees, multiple offices, and hundreds of endpoints. At that point, endpoint security for Mac isn't just about protecting individual devices. It's about knowing what's happening across your entire environment.
•
8 min readModern IT environments rarely stay still. Employees work across offices, homes, and coworking spaces. New devices join the fleet. Software changes. Configurations drift. And then the compliance audit notice arrives.
•
8 min readWhen I started my InfoSec journey, most of the offensive classes I took focused on memory corruption exploits. I learned a lot about buffer overflows, DEP and ASLR bypasses, and even got into kernel exploitation. However, since my job at that time was mostly hunting for bad guys in an insane amount of logs and telemetry data, I never really had the time to apply this knowledge.
•
2 min readNotify Windows users when app updates are available. When your users are ready, they can allow Iru to close the app and update the application. Employees get more control over when updates land, and you spend less time chasing down unpatched devices.
•
5 min readEDR threat detections and responses Iru EDR is built to detect threats before they go mainstream. By combining behavioral detections with insights from our own malware research, we're able to protect customers from exploitation even before public disclosures or patches become available.
•
Calvin So•
Cristian Molina•
13 min readThe threat landscape for macOS malware is expanding, while the number of specialists dedicated to defending against it has not kept pace. Unlike Windows, where machine learning (ML) models are supported by extensive documentation and standardized datasets, the macOS environment presents a significant knowledge gap. At Iru, we captured SSTAR Agent, a crypto drainer targeting web3 technology developers via a fake interview lure, which we documented in an earlier post using an ML triage we built.
•
13 min readCybersecurity has become one of the defining business risks of the modern era. In a recent U.S. Chamber of Commerce survey, 60% of small businesses said cybersecurity threats are a top concern, ranking above theft, natural disasters, and terrorism.
•
8 min readWhat is vulnerability remediation? Vulnerability remediation is the process of eliminating security vulnerabilities before attackers can exploit them. It involves identifying affected systems, prioritizing the most critical risks, and taking corrective action.
•
8 min readEndpoint vulnerability management (EVM) is the process of identifying, evaluating, prioritizing, and remediating security weaknesses on your endpoints before attackers can exploit them. Modern endpoint fleets are constantly changing. New devices come online, software updates roll out at different times, and vulnerabilities appear every day. For context, 2025 saw 49,183 new Common Vulnerabilities and Exposures (CVEs).
•
8 min readThis post was originally published in May 2023 and has been updated in July 2026 to reflect the latest information. When was the last time you or someone in your organization needed their Mac password to be something different than what it previously was? There are two ways to do that: change or reset. But although those two words might seem similar, their difference is significant.
Iru's bi-weekly collection of articles, videos, and research to keep IT & Security teams ahead of the curve.