Tag: vulnerability management
341 articles

Fortinet Urgently Patches Critical FortiWeb SQL Injection Flaw
A critical SQL injection flaw in Fortinet’s FortiWeb firewall puts countless web applications at risk—discover why urgent patching is essential to keep your data safe from attackers who need no credentials to strike.

Active Exploits Target Critical Wing FTP Server Flaw CVE-2025-47812
A critical flaw in Wing FTP Server is actively being exploited, putting countless systems at risk of total takeover—update now to lock down your files before attackers do.

Cybercriminals Target ‘Citrix Bleed 2’ Vulnerability for Exploitation
Cybercriminals exploit the ‘Citrix Bleed 2’ vulnerability, posing serious security risks to businesses and users worldwide. Stay informed and protected.

Live Webinar | Vulnerability Management 2.0: Addressing Web Exposure Before It’s Exploited
Join our live webinar on Vulnerability Management 2.0 to learn how to address web exposure effectively before it’s exploited. Secure your spot now!

Live Webinar | Vulnerability Management 2.0: Addressing ANZ Web Exposure Before It’s Exploited
Join our live webinar to explore Vulnerability Management 2.0 and learn how to proactively address web exposure in ANZ before exploitation occurs.

CVE Program Introduces Two New Forums to Boost CVE Usage
CVE Program launches two new forums to enhance collaboration and promote the adoption of CVE identifiers in cybersecurity practices.

Major Cisco Unified CM Flaw Allows Root Access Through Static Credentials
Major Cisco Unified CM vulnerability exposes systems to root access via static credentials, highlighting urgent security risks for users.

Bridging the Overlooked Vulnerability Management Gap
Discover strategies to bridge the overlooked vulnerability management gap, enhancing your organization’s security and risk mitigation efforts effectively.

Tenable Fixes Three High-Severity Flaws in Vulnerability Scanner Nessus
Tenable patches three high-severity flaws in Nessus, bolstering its vulnerability scanner to ward off critical exploits.

Democrats Push for In-Depth Review of the CVE Program Amid Federal Funding Uncertainty
Democrats demand a thorough review of the CVE program amid federal funding uncertainty, questioning future support and transparency.

Trend Micro Announces Security Fixes for Multiple Product Vulnerabilities
Trend Micro releases essential security updates to address product vulnerabilities, boosting protection against evolving cyber threats.

Why AI Needs Stronger Laws, Not Just Smarter Tech
In an era of rapid AI growth, stronger legal frameworks are vital to protect society, ensuring accountability and ethical technology advancement.

Enhancing Blue Team Tactics with Wazuh: Crafting Proactive Incident Response Playbooks
Boost blue team tactics with Wazuh—craft proactive incident response playbooks to streamline threat detection, response, and risk mitigation.

#Infosec2025: Seven Steps to Building a Mature Vulnerability Management Program
Discover #Infosec2025’s seven-step guide to developing a robust vulnerability management program that mitigates risks and strengthens security.

AI kept 15-year-old zombie vuln alive, but its time is drawing near
Discover how AI revived a 15-year-old zombie vulnerability that’s now on borrowed time. Unpack its risks, secrets, and impending fallout.

CISA Advised to Expand KEV Catalog with Enhanced Contextual Insights
CISA recommends expanding the KEV catalog with enhanced contextual insights to bolster threat identification and strengthen cybersecurity.

Tenable Strengthens AI Defenses Through Apex Security Acquisition
Tenable boosts AI defenses by acquiring Apex Security, enhancing protection and driving innovation in cybersecurity solutions.

Attackers are mapping your attack surface—are you?
Attackers are mapping your digital attack surface—are you prepared? Discover proven tactics to identify vulnerabilities and secure your assets against emerging threats.

251 Amazon-Hosted IPs Used in Exploit Scan Targeting ColdFusion, Struts, and Elasticsearch
251 Amazon-Hosted IPs exploit scan targets vulnerabilities in ColdFusion, Struts & Elasticsearch. Protect your systems from emerging threats now.

DragonForce Ransomware Leveraged in MSP Attack Using RMM Tool
DragonForce ransomware exploits an RMM tool to launch MSP-targeted attacks, exposing new vulnerabilities in managed service provider ecosystems.

Not Every CVE Deserves a Fire Drill: Focus on What’s Exploitable
Not every CVE warrants panic—focus on exploitable vulnerabilities to streamline risk management and boost your security strategy.

Rethinking CVSS: Overcoming Its Limitations and Strengthening Security Metrics
Rethink CVSS by overcoming its limitations and strengthening security metrics to enhance risk assessments and boost threat detection capabilities.

Fortinet fixes critical zero-day exploited in FortiVoice attacks
Fortinet patches a critical zero-day in FortiVoice exploited in attacks, bolstering security and safeguarding businesses.

New European Vulnerability Database Emerges as US CVE System Falters
US CVE system falters as a new European Vulnerability Database emerges, boosting cybersecurity with fresh insights and enhanced threat analysis.