CTEM shifts security focus from scans to attack paths
Continuous threat exposure management broadens security beyond vulnerabilities, emphasizing validation and accountability.
30 results for “vulnerabilities”
Continuous threat exposure management broadens security beyond vulnerabilities, emphasizing validation and accountability.
Adobe and Nvidia address dozens of vulnerabilities, including critical flaws in AI infrastructure and GPU attack mitigations.
Reco report: 80% of AI tools lack IT oversight; MCP servers and rising vulnerabilities amplify risk.
Microsoft says the time to patch vulnerabilities is shrinking, urging network-level controls to bridge the gap.
AI safety firm Alice raised $140M to expand its model defenses and enterprise guardrails against emerging attacks.
Broadcom patches 91 Spring vulnerabilities, with one critical flaw exposing LDAP servers to attack.
SecurityWeek’s weekly roundup covers a Ray bug, Threema DDoS, T-Mobile’s cable cut, Evooo1Bot, and more.
CISA adds four actively exploited vulnerabilities affecting macOS, SharePoint, vCenter, and Windows IKE to its KEV catalog.
Attackers are exploiting critical MLflow and FUXA vulnerabilities to steal cloud credentials and execute code.
Enterprise apps see 4.31x more critical vulnerabilities as AI accelerates creation and strains remediation.
Flashpoint logs 7.4M infostealer infections and 1.7B credentials stolen in H1 2026, up 27%.
A growing backlog of unresolved vulnerabilities is not a security problem but an organizational failure of ownership, capacity, and decision-making.
Intel and AMD release combined patches for more than 80 vulnerabilities, including high-severity issues in processors and software.
Ivanti releases updates for Endpoint Manager and Neurons for MDM addressing remotely exploitable vulnerabilities.
August 2026 ICS Patch Tuesday advisories from Siemens, Schneider Electric, Phoenix Contact address critical vulnerabilities, including a maximum-severity flaw in Siemens IoT devices.
August's Patch Tuesday addresses 398 vulnerabilities, including an actively exploited zero-day, as AI-driven discovery swells update volumes.
Adobe's latest security update addresses over 50 vulnerabilities, with critical fixes for ColdFusion and Campaign Classic rated as top priority.
New research reveals how the NatJack attack class exploits fundamental design flaws in NAT, bypassing standard network protections.
Cisco has released security patches addressing two dozen vulnerabilities across its product lines, including several critical defects.
Researchers reveal that vulnerabilities in AI agent foundations allow prompt injection to bypass critical trust boundaries.
Google has issued a new browser update addressing 41 critical and high-severity vulnerabilities across multiple platforms.
The shift toward browser-based workflows and AI tools is revealing significant vulnerabilities in traditional network security.
Continuous Threat Exposure Management faces a critical hurdle as organizations struggle to move past theory into active operations.
New research reveals widespread security flaws in baseboard management controllers across major global server manufacturers.
Security researchers uncovered vulnerabilities in WebKit that allow websites to bypass Apple's Private Relay and view IP addresses.
The integrity of the CVE database is under threat as automated, AI-generated reports exacerbate existing backlogs at NIST.
CISA has added an authentication bypass vulnerability in N-able N-central to its Known Exploited Vulnerabilities catalog, requiring immediate action.
New findings from CrowdStrike suggest China-linked groups are increasingly exploiting critical vulnerabilities within 24 hours.
Researchers identified three methods to compromise passkeys, highlighting vulnerabilities in Google's synchronization process.
Threat actors are actively chaining two critical SonicWall vulnerabilities to deploy ransomware and escalate privileges to root.