Common Vulnerabilities and Exposures (CVE) stories - Page 2
Picus launches tool for real-time validation of exploitable risks
Fri, 23rd May 2025
#
cve
Picus Security launches Exposure Validation, a tool using real-time attack simulations to identify which vulnerabilities are truly exploitable in organisations.
IP Fabric unveils upgrade to boost firewall visibility & compliance
Thu, 22nd May 2025
#
cve
IP Fabric launches version 7.2 to enhance firewall visibility and compliance, aiding enterprises in detecting misconfigurations and enforcing security policies.
Red Hat launches Advanced Developer Suite with focus on AI
Wed, 21st May 2025
#
cve
Red Hat launches Advanced Developer Suite on OpenShift, enhancing developer productivity, AI integration, and application security with new tools and templates.
Red Hat Enterprise Linux 10 brings AI & post-quantum security
Wed, 21st May 2025
#
cve
Red Hat launches Enterprise Linux 10, featuring AI integration, enhanced security with post-quantum cryptography, and hybrid cloud support for enterprises.
Emojis used to hide attacks & bypass major AI guardrails
Wed, 7th May 2025
#
cve
Mindgard reveals emoji smuggling can bypass AI guardrails from Microsoft, Meta, Nvidia, and others with up to 100% attack success, raising serious security concerns.
Black Kite launches tool for third-party vulnerability insight
Fri, 2nd May 2025
#
cve
Black Kite launches Vulnerability Intelligence Briefs to help organisations identify and manage third-party cyber risks, enhancing supply chain security.
Minimus launches with USD $51 million to cut 95% of CVEs
Wed, 30th Apr 2025
#
cve
Minimus launches with USD $51 million to cut 95% of CVEs in software supply chains, offering secure components and faster vulnerability reduction.
Armis offers free access to real-time cyber threat database
Thu, 24th Apr 2025
#
cve
Armis launches free Vulnerability Intelligence Database to help security teams anticipate and tackle cyber threats with real-time, AI-driven insights.
Funding crisis sparks fears for future of global CVE system
Thu, 17th Apr 2025
#
cve
US government funding for the crucial CVE cybersecurity programme is set to lapse, raising fears over global vulnerability tracking and defence efforts.
CVE system secures 11-month extension worth USD $44 million
Thu, 17th Apr 2025
#
cve
CISA extends its contract with MITRE for another 11 months at USD $44 million, securing the critical CVE vulnerability programme amid funding concerns.
Future of CVE repository in doubt as MITRE contract ends
Thu, 17th Apr 2025
#
cve
Concerns rise as MITRE's contract to manage the CVE vulnerability database nears expiry, risking disruption to global cybersecurity infrastructure.
US funding lapse casts uncertainty over global CVE system
Thu, 17th Apr 2025
#
cve
US government funding for MITRE's CVE programme has expired, risking disruption to global cybersecurity efforts and vulnerability tracking systems.
How to protect legacy medical devices from modern cyber threats
Tue, 15th Apr 2025
#
cve
Healthcare providers in Australia and New Zealand face growing cyber threats, with legacy medical devices proving vulnerable due to outdated security measures.
Microsoft April Patch Tuesday highlights zero-day risks
Fri, 11th Apr 2025
#
cve
Microsoft's recent Patch Tuesday sparked scrutiny with a 40-minute delay in updates and notable vulnerabilities, including a critical zero-day in the CLFS Driver.
Zscaler report urges shift from VPNs to Zero Trust
Fri, 11th Apr 2025
#
cve
Zscaler's 2025 ThreatLabz VPN Risk Report reveals soaring VPN usage in Australia but warns of heightened security risks, urging a shift to Zero Trust architectures.
N-able launches new feature to boost vulnerability management
Fri, 11th Apr 2025
#
cve
N-able has launched a new Vulnerability Management feature for its UEM products, enhancing risk mitigation for organisations amid rising cyber threats.
April Patch Tuesday: Microsoft announces 121 vulnerabilities
Wed, 9th Apr 2025
#
cve
Microsoft has unveiled 121 vulnerabilities in its April 2025 Patch Tuesday update, marking a significant increase from last month's total.
RunZero expands platform for enhanced exposure management
Tue, 8th Apr 2025
#
cve
runZero has unveiled an expanded platform to enhance exposure management, promising to aid organisations in effectively managing risk across their attack surfaces.
Kaspersky discovers & patches zero-day Chrome flaw
Thu, 3rd Apr 2025
#
cve
Kaspersky has uncovered and patched a critical zero-day vulnerability in Google Chrome, enabling attackers to bypass sandbox protections via malicious links.
GitHub Action compromise affects over 23,000 repositories
Thu, 20th Mar 2025
#
cve
A malicious commit in the tj-actions/changed-files GitHub Action, used in over 23,000 repositories, threatens software security across numerous CI pipelines.