top of page


Endpoint Capability Risk: Why Approved Software is Your Biggest Security Blind Spot
Most security tools ask whether software is malicious. Endpoint Capability Risk asks what it enables. Here is why that distinction matters, backed by current breach data.
Jacob Hughes
Apr 33 min read


Capability Risk Remediation Can Be Unsettling
While developing Endpoint Capability Risk (ECR) framework and scoring into LARCK, instantly seeing all of the endpoint risk data populate the system really uncovered just how powerful, dangerous, and 'over-tooled' a lot of my computers and servers were. In other words, it worked exactly as intended. Truly Eye-Opening. When importing CVE insights into the system for analysis and enrichment, I quickly saw all of the vulnerabilities and supporting information about them. Exact
Jacob Hughes
Feb 202 min read
bottom of page
