Tag

#vulnerability management

86 stories taggedvulnerability management · page 6 of 6.

Illustration: a dimly lit server room with rows of dark rack-mounted servers
Vulnerabilities

CISA Flags Four Live-Exploited Bugs in Adobe, Joomla and Langflow

The US cyber agency gave federal agencies until early December to patch a critical Adobe ColdFusion flaw and three others already being abused in the wild.

3 min read
Illustration: A darkened server room bathed in cool blue ambient light
AI Security

Five Eyes spy agencies warn AI will outpace cybersecurity defences within months

The intelligence alliance linking the US, UK, Australia, Canada and New Zealand says AI-powered attacks are arriving faster than most organisations can adapt, and breaches are now a question of when, not if.

3 min read
Illustration: A large illuminated server room seen from floor level, rows of blinking rack servers receding into the distance
AI Security

A Year of Testing Has Cooled Security Teams' Enthusiasm for AI-Run Hacking Drills

Companies that hoped AI could fully replace human security testers have pulled back sharply. New data shows only 9% still trust fully automated systems, down from nearly a third just twelve months ago.

4 min read
Illustration: A darkened server room with a single illuminated rack
Vulnerabilities

CISA Flags Actively Exploited SimpleHelp Flaw, Orders Federal Agencies to Patch Fast

A newly listed authentication bypass in SimpleHelp remote-support software is being used in real attacks, and federal agencies now face a hard deadline to fix it.

3 min read
Illustration: a dimly lit government server room, rows of racks with faint blue and amber status LEDs
Policy & Regulation

CISA orders federal agencies to patch SharePoint flaw by Saturday as attacks begin

A newly exploited Microsoft SharePoint bug lands in CISA's Known Exploited Vulnerabilities Catalog, triggering a three-day patching clock under Binding Operational Directive 26-04.

3 min read
Illustration: a large server room bathed in cool blue ambient light
AI Security

Frontier AI Is a Pressure Test, Not a New Threat Model

The arrival of capable AI models like Mythos changes attacker economics. It doesn't change which controls actually matter, and most organizations are still failing the old ones.

3 min read
Illustration for the story: The Patch Cycle Won't Survive Machine-Speed Adversaries
Opinion

The Patch Cycle Won't Survive Machine-Speed Adversaries

Defenders measured dwell time in days. Agentic attack pipelines are about to measure it in minutes.

3 min read
Illustration: A vast dark server room with rows of illuminated rack hardware receding into the distance
Cloud Security

AWS Continuum Wants to Close the Gap Between AI-Generated Code and AI-Fixed Vulnerabilities

Amazon's new agentic security service promises continuous discovery, triage, and remediation. In practice, it's a bet that the same AI acceleration creating your backlog can also drain it.

3 min read
Illustration: a server room floor bathed in cool blue and amber light
AI Security

Knowingly Shipping Vulnerable Code Has Become Standard Practice, Survey Finds

A Checkmarx survey of 2,350 security leaders finds nearly half of production code is AI-generated, and enterprises are deploying it despite knowing it carries unresolved flaws.

3 min read
Illustration: a dimly lit server rack with amber warning LEDs blinking
Opinion

The Patch Window Is Now Measured in Hours

AI-assisted exploit development has collapsed the time between disclosure and mass exploitation. Traditional vulnerability management workflows weren't built for this pace.

3 min read
Illustration: A wide server room corridor at night, bathed in cool blue and amber warning lights
Policy & Regulation

India Sets a 12-Hour Clock on Exploited Vulnerabilities. Can Enterprises Actually Do It?

CERT-In's new AI-threat framework resets expectations around patch velocity, but the real test is whether organizations even know what's exposed.

3 min read
© 2026 Threat Vectr