SilentGlass Targets a Neglected Monitor Attack Path

Monitors have been a weak point because they sit on trusted video links that attackers can abuse to reach sensitive data or pivot into a network. SilentGlass is meant to close that gap with a plug-and-play block on unexpected HDMI and DisplayPort connections, so the standard response of hardening endpoints misses a separate physical attack surface. The NCSC says it created the device, licensed Goldilock Labs to manufacture and sell it globally with Sony UK, and launched it at CYBERUK on 22 April. It has already been deployed on government estates and is approved for high-threat environments, which makes this a practical control rather than a lab concept. The forward risk is that display connections remain a live path wherever monitors carry sensitive information and existing mitigations are too costly or awkward to deploy. SilentGlass does not remove the need to control physical access, but it gives organizations a way to reduce a class of attack that has been hard to address at scale.

Part of the PlainSec briefing for 2026-04-27

Sources