Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Iru

Iru Vendor Cyber Rating & Cyber Score

iru.com

Iru is the AI-powered security & IT platform used by the world’s fastest-growing companies to secure their users, apps, and devices. Built for the AI era, Iru unifies identity & access, endpoint security & management, and compliance automation—collapsing the stack and giving IT & security time and control back.


Iru A.I CyberSecurity Scoring

Iru
Company Information
Website:http://iru.com
Employees number:388
Number of followers:33,820
NAICS:5112
Industry Type:Software Development
Homepage:iru.com
Iru Risk Score (AI oriented)
Between 700 and 749
logo
IruSoftware Development
Updated:
24/06/2026
742/1000
Moderate
Ba
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Iru Global Score (TPRM)
xxxx
logo
IruSoftware Development
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Iru
IruModerate
Current Score
742Ba (MODERATE)
01000
1 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
743Before Incident
JULY 2026
743Before Incident
JUNE 2026
742Before Incident
MAY 2026
742Before Incident
APRIL 2026
742Before Incident
MARCH 2026
741Before Incident
FEBRUARY 2026
741Before Incident
JANUARY 2026
740Before Incident
DECEMBER 2025
740Before Incident
NOVEMBER 2025
739Before Incident
OCTOBER 2025
739Before Incident
SEPTEMBER 2025
738Before Incident
AUGUST 2025
755Before Incident
Cyber Attack
01 Aug 2025Iru
Kandji and CrowdStrike: macOS Weaknesses Chained to Silently Disable Endpoint Security Agents

macOS Attack Technique Silently Disables EDR and MDM Tools Without Admin Privileges

737After Incident
CRITICAL-18
CROOFF1782312102
macOS Attack Technique Silently Disables EDR and MDM Tools Without Admin Privileges Cybersecurity firm XM Cyber has uncovered a novel macOS attack method that allows a standard, non-administrative user to disable enterprise endpoint security tools including EDR and MDM agents without triggering alerts or requiring kernel exploits. The technique leverages legitimate macOS behaviors rather than software vulnerabilities, making detection difficult. The attack exploits weakly validated XPC connections and the injection of malicious payloads into application Interface Builder (NIB) files, techniques previously documented but never chained in this way. A key component involves abusing the persistence of the kernel’s code-signing trust cache after a signed application executes, enabling attackers to impersonate trusted app components and invoke privileged XPC methods undetected. XM Cyber demonstrated the technique against CrowdStrike Falcon Sensor, which was fully unloaded from a standard user account, and Kandji MDM, which was permanently deactivated via a two-stage exploit that cleared EDR protections and terminated the Endpoint Security Framework extension. A third, unnamed enterprise EDR vendor was also successfully targeted and is working on a patch. Vendor Responses: - CrowdStrike paid a bug bounty and implemented detection measures. - Kandji patched the flaw and assigned CVE-2026-39118. - Apple has not yet publicly commented. Researcher Hillel Pinto will release an open-source tool, XPC Hunter, to automate the detection of exploitable XPC privilege escalation surfaces across macOS applications. A full presentation is scheduled for Black Hat US in August 2026. The findings highlight persistent risks in macOS security, even as Apple continues to address legacy attack vectors.
INCIDENT DETAILS -
TYPE
Privilege Escalation / EDR Bypass
IMPACT
Systems Affected: macOS systems with EDR/MDM tools (CrowdStrike Falcon Sensor, Kandji MDM, unnamed enterprise EDR vendor)Operational Impact: Disabling of EDR and MDM protections, potential unauthorized access or persistence

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Iru ?
?
What was Iru's A.I Rankiteo Cyber Score in July 2026 ?
?
What was Iru's A.I Rankiteo Cyber Score in June 2026 ?
?
What was Iru's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Iru's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Iru's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Iru's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Iru's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Iru's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Iru's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Iru's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Iru's A.I Rankiteo Cyber Score in September 2025 ?
?
What is the average per-incident point impact on Iru's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Iru ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Iru's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?