Skip to content

Beacon

v0.0.61 Security

This release includes 1 security fix for security teams reviewing exposed deployments.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 1 known CVE

Topics

agent-ai-cli agent-security ci-cd claude-code cloud codex
+7 more
cursor detection-engineering endpoint-security mobile-device-management security security-information-and-event-management security-tools

Affected surfaces

auth rbac

ReleasePort's take

Light signal
editorial:auto 1mo

The release introduces YAML configuration for threat detections and adds rule scanning on local telemetry endpoints.

Why it matters: These features expand detection capabilities, enabling more precise security monitoring without altering existing workflows.

Summary

AI summary

Updates Other, go/zipslip, and macOS/Linux across a mixed release.

Changes in this release

Security High

Hardens rule pack extraction and install against path traversal attacks

Hardens rule pack extraction and install against path traversal attacks

Source: llm_adapter@2026-06-13

Confidence: high

Security High

Rejects archive entries containing '..' to prevent zip‑slip vulnerabilities

Rejects archive entries containing '..' to prevent zip‑slip vulnerabilities

Source: llm_adapter@2026-06-13

Confidence: high

Feature Low

Adds YAML config for threat detections

Adds YAML config for threat detections

Source: llm_adapter@2026-06-13

Confidence: high

Feature Low

Adds rule scanning support on local endpoint telemetry

Adds rule scanning support on local endpoint telemetry

Source: llm_adapter@2026-06-13

Confidence: high

Feature Low

Adds scan and rules support functionality

Adds scan and rules support functionality

Source: llm_adapter@2026-06-13

Confidence: high

Feature Low

Adds asymptote-observe integration

Adds asymptote-observe integration

Source: llm_adapter@2026-06-13

Confidence: high

Bugfix Medium

Fixes Windows embed path issue

Fixes Windows embed path issue

Source: llm_adapter@2026-06-13

Confidence: high

Bugfix Medium

General bug fix (unspecified)

General bug fix (unspecified)

Source: llm_adapter@2026-06-13

Confidence: high

Bugfix Medium

Final miscellaneous fixes applied

Final miscellaneous fixes applied

Source: llm_adapter@2026-06-13

Confidence: high

Bugfix Medium

Additional unspecified fix

Additional unspecified fix

Source: llm_adapter@2026-06-13

Confidence: high

Full changelog

Changelog

Other

  • ed012e0f287af24522002ba363e6b51ab6a50317 Add YAML config for threat detections (#157)
  • 5a3ea7c8dce52386a05994cc7a58dfff453cb739 Add rule scanning support on local endpoint telemetry (#158)
  • 8142cd5554b76a54c5b6c2af282297b03fd89110 Fix windows embed path
  • 2cdbef2b34dd39ad62f0ad9d9e346ea7c9d168b2 Harden rule pack extraction and install against path traversal
  • c31174dda50c375ff3e313da3dd577590ae3380d add scan and rules support
  • f8d2ec28bac2572edb0803067e48130cb5d52ffe add-asymptote-observe
  • d23b266c207c650086c25ca2cdc8612bc7d5dc15 bugfixg
  • fdaac969254669ed4b1d86b6efe3129e84ce3cb9 final fixes
  • d0b1c6edc588aa4b99fc789276f9f22d561c80c8 fix
  • 13556e6d3ea44ad0989e991d53555e6f064370bb rules pull: reject archive entries containing '..' (go/zipslip)

Installation

Homebrew (macOS/Linux)

brew tap asymptote-labs/tap
brew install beacon

Manual Download

Download the appropriate archive for your platform from the assets below, extract it, and add the binary to your PATH.

Quick Start

beacon endpoint install
beacon endpoint status
beacon endpoint wazuh print-config

Security Fixes

  • Reject archive entries containing '..' in go/zipslip to prevent path traversal attacks

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track Beacon

Get notified when new releases ship.

Sign up free

About Beacon

All releases →

Related context

Earlier breaking changes

  • v0.0.54 Require cloud run ID before upload

Beta — feedback welcome: [email protected]