Tag

#vulnerability management

86 stories taggedvulnerability management · page 2 of 6.

A software developer's workstation with multiple monitors displaying code repositories and vulnerability scanning tools, with notification alerts cascading acro
AI Security

AI Is Finding Software Flaws Faster Than Anyone Can Fix Them. Here's Why Experts Say Don't Panic Yet.

A new report tracked nearly 40,000 software vulnerability reports across a year of real data. The headline number is alarming. The fine print is more reassuring.

4 min read
A network operations center displaying security alerts and vulnerability notifications on multiple screens, with CISA threat bulletin information visible on the
Vulnerabilities

CISA flags seven actively exploited flaws, including two in SonicWall SMA1000 boxes

The US cyber agency's Known Exploited Vulnerabilities catalog picks up bugs in Sangoma, JFrog, LiteLLM, Kestra, Starlette and a pair in SonicWall's remote access appliances.

4 min read
A Las Vegas conference panel stage with four cybersecurity experts at a discussion table, with AI safety guidelines and security limitations displayed on screen
AI Security

AI Models Are Breaking Their Own Rules. Security Experts Are Alarmed.

At a Las Vegas panel, four cybersecurity professionals debated whether safety limits built into AI slow down defenders more than attackers. One expert changed his mind live.

5 min read
A security researcher examines multiple screens displaying AI threat patterns and attack visualizations at a cybersecurity conference floor, with other attendee
AI Security

Black Hat 2026: AI Is Changing How Hackers Work, and Defenders Are Scrambling to Catch Up

Three reporters who walked the floor at Black Hat USA 2026 in Las Vegas came back with a clear message: artificial intelligence is rewriting the rules of cybersecurity faster than companies, governments, or their own tools are ready for.

5 min read
A corporate security team running a simulated attack drill in a control room, multiple screens showing attack scenarios, AI-powered threat patterns, and rapid r
AI Security

Companies Are Spending More on Cyber 'Attack Drills' to Keep Up with AI-Powered Hackers

New research from Omdia finds 88% of organisations plan to increase spending on offensive security, as AI gives attackers a speed advantage that human-paced testing can no longer match.

4 min read
A security operations center with multiple monitors displaying continuous vulnerability scanning dashboards, showing real-time threat detection in progress rath
Vulnerabilities

Why Security Teams Are Ditching the Quarterly Scan for Something That Never Stops

A growing number of organisations are replacing old-school vulnerability scanning with a continuous approach called CTEM. The idea sounds simple. The culture change is anything but.

4 min read
Multiple server racks in a secure data center with urgent patch deployment notices displayed across monitoring dashboards, showing critical vulnerability indica
Vulnerabilities

CISA Flags Six Actively Exploited Bugs, Including a Citrix NetScaler Flaw

The U.S. cyber agency ordered federal agencies to patch fast, after evidence hackers are already breaking into Citrix, Linux and Microsoft SQL Server systems.

3 min read
A corporate IT storage room filled with servers and networking equipment, many with outdated stickers and faded labels, showing years of accumulated patches and
Vulnerabilities

CISA: Most Breaches Still Start With Old, Unpatched Bugs

A new review from the US cyber agency finds attackers rarely need clever tricks. They scan for known, exposed flaws that companies never got around to fixing.

3 min read
A security timeline visualization showing the shrinking window between public vulnerability disclosure and active exploit availability, with hours marked in red
Vulnerabilities

Microsoft says the patching window is shrinking fast. Here is what that means for ordinary people.

Software flaws are being turned into working attacks within hours of being made public. Microsoft says companies can no longer patch their way out fast enough, and is pushing a network-level defensive layer to buy time.

4 min read
A split timeline visualization: on the left, an AI system rapidly discovering security bugs with green checkmarks appearing in seconds, on the right, a slow man
AI Security

AI Finds the Bugs in Hours. Fixing Them Still Takes Months.

Artificial intelligence is now fast enough to discover serious security flaws in widely used software within hours. The human systems needed to patch those flaws haven't come close to keeping pace, and the gap is growing.

4 min read
A security analyst's desk with multiple monitors displaying vulnerability scanning software dashboards, with one screen highlighting early-warning alerts appear
Vulnerabilities

Nucleus Security says its new tools can spot a vulnerability before your scanner even knows it exists

A new early-warning feature aims to cut the days-long gap between a software flaw going public and security teams being able to scan for it.

4 min read
A security team's war room with walls covered in charts and graphs showing vulnerability backlogs, patch management timelines, and AI-powered threat assessment
Opinion

Vulnerability management is drowning, and AI is being sold as the lifeboat

Security teams face more software flaws than they can patch, and vendors are pitching frontier AI as the fix. Lucy Green looks at what that actually means for the people running these programmes.

3 min read
A code repository dashboard on a monitor showing rapidly accumulating open-source packages and dependencies, with a growing vulnerability count meter displayed
AI Security

AI Is Writing Your Code Faster Than Your Security Team Can Read It

Coding assistants are flooding repos with open-source packages, and the vulnerability backlog is winning the race.

4 min read
A split-screen comparison showing a calendar date crossed out with rapidly shrinking time intervals, representing the accelerating vulnerability-to-exploit wind
AI Security

From Months to Minutes: How AI Is Forcing Companies to Rethink Software Security

Criminals once needed two years to turn a software flaw into a working attack. By next year, that window is expected to shrink to four hours. Companies that patch on a quarterly schedule are already behind.

3 min read
A strategic battle map showing cybersecurity priorities ranked by threat level, with CISO decision-makers marking which vulnerabilities to defend versus which t
AI Security

AI Arms Race: Why Smart CISOs Are Choosing Their Battles, Not Fighting All of Them

Attackers are using AI to move faster, employees are leaking sensitive data into consumer tools without realising it, and the window to fix vulnerabilities before criminals exploit them is shrinking. Here is what security leaders should actually prioritise.

5 min read
© 2026 Threat Vectr