This release includes 1 security fix for security teams reviewing exposed deployments.
Topics
+7 more
Affected surfaces
ReleasePort's take
Light signalThe release introduces YAML configuration for threat detections and adds rule scanning on local telemetry endpoints.
Why it matters: These features expand detection capabilities, enabling more precise security monitoring without altering existing workflows.
Summary
AI summaryUpdates Other, go/zipslip, and macOS/Linux across a mixed release.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Security | High |
Hardens rule pack extraction and install against path traversal attacks Hardens rule pack extraction and install against path traversal attacks Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Security | High |
Rejects archive entries containing '..' to prevent zip‑slip vulnerabilities Rejects archive entries containing '..' to prevent zip‑slip vulnerabilities Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Feature | Low |
Adds YAML config for threat detections Adds YAML config for threat detections Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Feature | Low |
Adds rule scanning support on local endpoint telemetry Adds rule scanning support on local endpoint telemetry Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Feature | Low |
Adds scan and rules support functionality Adds scan and rules support functionality Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Feature | Low |
Adds asymptote-observe integration Adds asymptote-observe integration Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Bugfix | Medium |
Fixes Windows embed path issue Fixes Windows embed path issue Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Bugfix | Medium |
General bug fix (unspecified) General bug fix (unspecified) Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Bugfix | Medium |
Final miscellaneous fixes applied Final miscellaneous fixes applied Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Bugfix | Medium |
Additional unspecified fix Additional unspecified fix Source: llm_adapter@2026-06-13 Confidence: high |
— |
Full changelog
Changelog
Other
- ed012e0f287af24522002ba363e6b51ab6a50317 Add YAML config for threat detections (#157)
- 5a3ea7c8dce52386a05994cc7a58dfff453cb739 Add rule scanning support on local endpoint telemetry (#158)
- 8142cd5554b76a54c5b6c2af282297b03fd89110 Fix windows embed path
- 2cdbef2b34dd39ad62f0ad9d9e346ea7c9d168b2 Harden rule pack extraction and install against path traversal
- c31174dda50c375ff3e313da3dd577590ae3380d add scan and rules support
- f8d2ec28bac2572edb0803067e48130cb5d52ffe add-asymptote-observe
- d23b266c207c650086c25ca2cdc8612bc7d5dc15 bugfixg
- fdaac969254669ed4b1d86b6efe3129e84ce3cb9 final fixes
- d0b1c6edc588aa4b99fc789276f9f22d561c80c8 fix
- 13556e6d3ea44ad0989e991d53555e6f064370bb rules pull: reject archive entries containing '..' (go/zipslip)
Installation
Homebrew (macOS/Linux)
brew tap asymptote-labs/tap
brew install beacon
Manual Download
Download the appropriate archive for your platform from the assets below, extract it, and add the binary to your PATH.
Quick Start
beacon endpoint install
beacon endpoint status
beacon endpoint wazuh print-config
Security Fixes
- Reject archive entries containing '..' in go/zipslip to prevent path traversal attacks
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About Beacon
All releases →Related context
Related tools
Earlier breaking changes
- v0.0.54 Require cloud run ID before upload
Beta — feedback welcome: [email protected]