#vulnerability management
86 stories taggedvulnerability management · page 5 of 6.

The Patch Race Is Now a Patch Sprint, and Defenders Are Losing
When vendors ship a security fix, attackers reverse-engineer it within hours. The window to update has shrunk from weeks to a working day.

Code Red Turns 25: The Worm That Still Has Things to Teach Us
A worm that tore across the internet in 2001 exposed a visibility blind spot that organisations keep walking into. The rush to deploy AI tools is the latest version of the same mistake.

AI Is Cutting the Time to Find a Hack From Weeks to Hours. Here Is What Security Teams Should Do About It.
South Korean hacker-turned-CEO Park Chan-am told a government security forum that artificial intelligence has shattered old assumptions about how fast criminals break into corporate systems, and that most organisations aren't ready.

The Real Mythos Problem Isn't New Bugs. It's How Long Yours Stay Open.
Anthropic's AI-driven vulnerability finder has flooded the pipeline since April. But the harder question for defenders is how many days a known flaw sits unpatched on their own network.

Capital One Releases Free AI Security Tool That Hunts Down Code Flaws Automatically
VulnHunter scans software for exploitable weaknesses and suggests fixes. The bank is giving it away free, arguing no single company can solve this problem alone.

CISA Flags Three Actively Exploited Bugs in Fortinet and SharePoint
Two Fortinet FortiSandbox command-injection flaws and a Microsoft SharePoint deserialization bug are being used in real attacks, the US cyber agency warns.

AI Is Finding Software Flaws Faster Than Companies Can Fix Them. Something Has to Change.
Security experts are calling time on the old 'scan once a month, patch when you can' model. Artificial intelligence now finds vulnerabilities faster than human teams can close them.

Four Security Firms Patch Serious Flaws in Their Own Products
Tenable, ESET, Tanium, and Trend Micro have all pushed out fixes this month for high- and critical-severity vulnerabilities in tools that businesses rely on to stay secure.

White House Launches AI-Powered Clearinghouse to Fix Software Flaws Faster
A new federal program called Gold Eagle will use artificial intelligence to sort and prioritise software vulnerabilities across government agencies and critical industries. Whether it delivers depends almost entirely on execution.

White House Launches 'Gold Eagle' to Speed Up Vulnerability Fixes Across Critical Infrastructure
A new government programme pairs open-source software maintainers with power grids, hospitals, and other critical operators to find and patch security flaws faster, with AI doing much of the sorting work.

Cybersecurity Spends Billions Spotting Attacks. It Should Be Stopping Them.
Detection tools now dominate the security market, but faster alerts haven't cut breach rates. A growing number of security professionals say the industry has the balance badly wrong.

569 Patches in One Month: Microsoft Just Broke Every Record on the Books
AI tools are finding software flaws faster than any human team ever could. The result is a single monthly update that dwarfs every full-year fix count from the past two decades.

You Don't Need to Fire the Exploit to Know You're Exposed
A quieter way to test whether a vulnerability actually threatens your network: check the steps an attacker would need, not the payload itself.

The Engineers Building Both Sides of the AI Security War
A new breed of security team is quietly writing the rules for how artificial intelligence gets used in cyberattacks and defenses. Most companies have never heard of them.

Security Debt Is Growing Faster Than Companies Can Fix It. Here Is What That Means.
Eight in ten organisations carry a backlog of unresolved security flaws older than a year. A practical framework explains how to turn that reality into a board-level conversation.