The Verizon 2026 Data Breach Investigations Report (DBIR) reveals a threat environment moving much faster than many organizations can reasonably protect themselves against. Based…
Browsing: Threats and Vulnerabilities
As organizations shift from vulnerability management (VM) to exposure management (EM), the role of the VM analyst must evolve or…
Microsoft has disclosed a zero-day vulnerability that affects Exchange Server 2016, 2019, and Subscription Edition. This vulnerability would give bad actors an opportunity to…
Microsoft is poised to set a new record for yearly patching by having released patches for over 130 vulnerabilities as part of its May…
Security operations centers (SOCs) operate under a difficult reality where there are far more security alerts than human analysts available…
Security researcher Tom Jøran Sønstebyseter Rønning, posting as @L1v1ng0ffTh3L4N, has revealed that Microsoft Edge decrypts every saved password at startup and holds all of them in…
There are discussions in US cybersecurity circles to radically shorten the time given to government agencies to fix software vulnerabilities currently being exploited, especially amid concerns about the growing use of artificial intelligence-based attacks. According…
The Cybersecurity and Infrastructure Security Agency (CISA) has added another Linux kernel vulnerability, CVE-2026-31431, also known as Copy Fail, to the Known…
The cybersecurity skills gap is usually framed as a hiring problem. Organizations respond by expanding recruitment pipelines, investing in certifications,…
The US Federal Communications Commission (FCC) has announced a plan to prevent the authorization and import of new consumer routers…
