Tuesday 28 July 2026 22:41:53 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContactLogin
EnglishItaliano

WIKICROOK

Endpoint hardening

Security controls applied to laptops, desktops, and other user devices to reduce compromise risk.

Endpoint hardening is the practice of reducing risk on user devices such as laptops, desktops, and administrator workstations. It combines controls like removing unnecessary software, enforcing patching, restricting local admin rights, enabling disk encryption, locking down browser and application settings, and turning on endpoint detection and response tools. The goal is to make the device harder to exploit and limit what an attacker can do after initial access.

In cyber security, endpoints often sit between users and high-value systems, so they are a common entry point for phishing, malware, and credential theft. Hardening matters because a compromised workstation can expose passwords, tokens, VPN sessions, or management tools used to reach servers and cloud services. In defense, teams harden endpoints with least privilege, application control, device monitoring, and rapid update cycles. In attacks, threat actors often look for weakly protected admin machines because they can provide a direct path to sensitive infrastructure.

← WIKICROOK index