This release includes 1 breaking change for platform teams planning a safe upgrade.
✓ No known CVEs patched in this version
Topics
+7 more
Affected surfaces
ReleasePort's take
Light signalThe threat‑rules pack is now distributed as a separate release asset instead of being embedded in the binary.
Why it matters: Separating the rules into a release asset simplifies updates and maintenance for developers, SREs, and security engineers managing detection configurations.
Summary
AI summaryThreat‑rules pack is now shipped as a separate release asset rather than embedded in the binary.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Feature | Low |
Adds comprehensive threat‑rules pack ported from blastradius Adds comprehensive threat‑rules pack ported from blastradius Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Feature | Low |
Adds invisible‑character and shell‑escape threat rules from ATR review Adds invisible‑character and shell‑escape threat rules from ATR review Source: llm_adapter@2026-06-13 Confidence: high |
— |
| Refactor | Low |
Ships the threat‑rule pack as a release asset instead of embedding in binary Ships the threat‑rule pack as a release asset instead of embedding in binary Source: llm_adapter@2026-06-13 Confidence: high |
— |
Full changelog
Changelog
Other
- 40c4b96dac8c31413cbc17086f09d7e213200018 Add comprehensive threat-rules pack ported from blastradius
- 0fcf969df697d946862a379a9cdcfe234f185f33 Add comprehensive threat-rules pack ported from blastradius (#159)
- 14cdfab5560fd8cb73f338d3a41e266f57f546dc Add invisible-character and shell-escape threat rules from ATR review
- 8a7fca787766eccae409408927cd04606e3cd956 Address Cursor Bugbot review on threat-rules pack
- 930bedc2a2ce537413ebd6563e47bd94fb9220ee Ship the threat-rule pack as a release asset, not in the binary
- 83be9bd7303b006e84ca24c831eec325a6f63603 Ship threat-rule pack as a release asset (not embedded) (#161)
Installation
Homebrew (macOS/Linux)
brew tap asymptote-labs/tap
brew install beacon
Manual Download
Download the appropriate archive for your platform from the assets below, extract it, and add the binary to your PATH.
Quick Start
beacon endpoint install
beacon endpoint status
beacon endpoint wazuh print-config
Threat detection rules
beacon ships with a small built-in baseline. Install the full threat-rule
pack (attached as threat-rules.tar.gz below) and scan your local telemetry:
beacon rules pull https://github.com/asymptote-labs/agent-beacon/releases/download/v0.0.63/threat-rules.tar.gz
beacon rules list
beacon scan
Breaking Changes
- Threat‑rule pack is no longer embedded in the binary; it must be downloaded as a separate release asset (threat-rules.tar.gz).
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About Beacon
All releases →Related context
Related tools
Earlier breaking changes
- v0.0.54 Require cloud run ID before upload
Beta — feedback welcome: [email protected]