
Your scanner finds 4,000 vulns. Which 12 matter?
Nubivance is a Rapid7 Registered Partner delivering vulnerability management as a service - scanning, risk-based prioritization, and remediation follow-through across IT and OT.
Fix the backlog
Facebook uncovers a critical vulnerability in FreeType 2, highlighting security risks and the importance of timely software updates for developers.

iOS 18.3.2 fixes a critical WebKit vulnerability currently under active exploitation, enhancing device security and user protection.

Mozilla urges Firefox users to update their browser to avoid issues from an upcoming certificate expiration. Stay secure and up-to-date!

Microsoft patches a critical Windows kernel zero-day vulnerability exploited since 2023, enhancing security and protecting users from potential attacks.

Chinese cyberespionage group linked to breaches in Juniper MX routers, highlighting vulnerabilities and the ongoing threat to global cybersecurity.

Coordinated cyber attack targets multiple SSRF vulnerabilities using over 400 IPs, highlighting the growing threat landscape in cybersecurity.

Microsoft’s latest Windows updates are causing USB printers to malfunction, resulting in random text being printed. Stay informed on this issue.

Microsoft fixes 57 security vulnerabilities, including 6 critical zero-day exploits, enhancing protection for users and systems against potential threats.

Nubivance is a Rapid7 Registered Partner delivering vulnerability management as a service - scanning, risk-based prioritization, and remediation follow-through across IT and OT.
Fix the backlog
Microsoft patches seven critical zero-day vulnerabilities in March, enhancing security and protecting users from potential cyber threats.

Apple releases an update to fix a WebKit zero-day exploit, enhancing security against targeted attacks and protecting user data.

Discover essential insights on Patch Tuesday: six zero-day fixes or six critical vulnerabilities? Stay secure and informed with our expert analysis.

Microsoft’s March 2025 Patch Tuesday addresses six critical zero-day vulnerabilities, enhancing security and protecting users from potential threats.

Apple has patched a critical WebKit zero-day vulnerability exploited in advanced attacks, enhancing security for users against potential threats.

Colombian institutions face threats from Blind Eagle, exploiting NTLM vulnerabilities and utilizing GitHub-driven RATs for cyber attacks.

New wave of attacks targets a critical PHP RCE vulnerability, putting countless websites at risk. Stay informed and secure your systems now.

CISA warns of critical Ivanti EPM vulnerabilities being exploited in ongoing attacks, urging immediate action to mitigate risks.

No IT department, no security budget, real exposure. Nubivance builds right-sized security foundations for small companies. Send them this.
Send it along
Discover how adversarial exposure validation uncovers hidden risks, ensuring robust security and resilience in systems against unforeseen threats.

CISA urges organizations to promptly address critical Ivanti vulnerabilities to enhance cybersecurity and protect sensitive data from potential threats.

Moxa has released a patch addressing a critical authentication bypass vulnerability in PT switches, enhancing security for users. Update now.

CISA updates the KEV list, adding five actively exploited vulnerabilities in Advantive VeraCore and Ivanti EPM to enhance cybersecurity awareness.

Cyber leaders convene to discuss a proposed vulnerability disclosure policy aimed at enhancing security and collaboration in the digital landscape.

Microsoft announces the upcoming deprecation of certain Publisher features, urging users to adapt to new tools and updates for enhanced productivity.

Discover a new polymorphic attack that clones browser extensions to steal credentials, posing significant risks to user security and privacy.

Google awarded $12 million in bug bounties to security researchers last year, enhancing cybersecurity and encouraging vulnerability reporting.