Tag: vulnerability management
550 articles

91% of organizations face vulnerability remediation delays
91% of organizations face delays in vulnerability remediation, increasing security risks. Discover strategies to speed up patch management for stronger protection.

Study Reveals a 16.7% Surge in Automated Scanning Activity
Study reveals a 16.7% surge in automated scanning activity, spotlighting escalating cyber threats and the urgent need for enhanced security measures.

Johnson Controls ICU Vulnerability Poses New Challenges for Critical Infrastructure Security
Johnson Controls ICU delivers advanced control solutions for safe, efficient building management. Experience innovation, performance, and reliability.

Q1 2025 Cybersecurity Alert: 159 CVEs Exploited with 28.3% Breached in Under 24 Hours
Q1 2025 Cybersecurity Alert: 159 CVEs exploited, 28.3% breached in under 24 hours—critical vulnerabilities driving rapid, high-risk incidents.

Marks & Spencer Takes a Direct Approach to Incident Response
Marks & Spencer adopts a proactive incident response strategy, ensuring swift action and effective management to safeguard operations and customer trust.

Socket Acquires Coana to Enhance Code Risk Accuracy
Socket acquires Coana to improve code risk accuracy, enhancing software security and reliability for developers and businesses alike.

Today’s LLMs Rapidly Generate Exploits from Patches
Discover how today’s LLMs quickly generate exploits from software patches, highlighting security vulnerabilities and the implications for cybersecurity.

Navigating Post-Mitre Management: The Future of the CVE Program
Explore the future of the CVE Program and strategies for effective post-Mitre management in cybersecurity. Stay ahead in vulnerability management.

Uncle Sam Cuts Funding for the CVE Program: Yes, That CVE
Uncle Sam slashes funding for the CVE program, raising concerns about its impact on community engagement and countering violent extremism efforts.

Recognizing Key Cybersecurity Threats
Learn to identify key cybersecurity threats to protect your organization from data breaches, malware, and other digital risks effectively.

Last-Minute CISA Funding Secures Future for CVE Program and Potential New Location
Last-minute CISA funding ensures the CVE program’s future and explores potential new locations for enhanced cybersecurity initiatives.

MITRE to Halt CVE and CWE Operations, Sparking Chaos
MITRE’s decision to halt CVE and CWE operations ignites chaos in cybersecurity, leaving vulnerabilities untracked and risk management in disarray.

MITRE Alerts: Critical CVE Program Funding Set to Expire Today
MITRE Alerts: Urgent notice as critical CVE program funding expires today, impacting cybersecurity efforts and vulnerability management.

U.S. Government Funding for MITRE’s CVE Set to Expire April 16, Cybersecurity Sector on High Alert
U.S. government funding for MITRE’s CVE program expires April 16, raising alarms in the cybersecurity sector over potential vulnerabilities.

Uncle Sam Cuts Funding for the Controversial CVE Program
Uncle Sam halts funding for the controversial CVE program, sparking debate over national security and community engagement strategies.

The Emerging Supply Chain Risk of AI-Generated Code Dependencies
Explore the rising supply chain risks associated with AI-generated code dependencies and their impact on software security and reliability.

NVD Overhauls Operations Amid Rising Vulnerability Reports
NVD revamps its operations to enhance response to increasing vulnerability reports, ensuring better security and timely updates for users.

Hackers Exploit SSRF Vulnerabilities in EC2 to Access AWS Credentials
Hackers exploit SSRF vulnerabilities in EC2 instances to gain unauthorized access to AWS credentials, posing significant security risks.

NIST Prioritizes Vulnerability Backlog by Deferring Pre-2018 CVEs
NIST prioritizes vulnerability management by deferring pre-2018 CVEs, focusing resources on more recent threats to enhance cybersecurity effectiveness.

The Illusion of Security: How Vanity Metrics Leave You Vulnerable
Discover how relying on vanity metrics can create a false sense of security, leaving you exposed to real vulnerabilities in your strategy.

The Overlooked Threats: What Native Cloud Security Tools Miss
Discover the hidden risks in native cloud security tools and learn what critical threats they often overlook to better protect your cloud environment.

CISA Expands KEV Catalog with New Vulnerability Addition
CISA expands its KEV Catalog by adding new vulnerabilities, enhancing cybersecurity measures and providing critical updates for organizations to protect their systems.

Urgent: Exploitation of Ivanti Vulnerability Leads to TRAILBLAZE and BRUSHFIRE Malware Deployment
Urgent alert: Exploitation of Ivanti vulnerability triggers deployment of TRAILBLAZE and BRUSHFIRE malware, posing significant security risks.

Mass-Scanning of Juniper and Palo Alto Networks Products: What’s Behind It?
Explore the reasons behind the mass-scanning of Juniper and Palo Alto Networks products, uncovering security implications and industry responses.