Vulnerability
Discover expert analysis on vulnerability with news, features and insights from the team at IT Pro.
-
CVEs are set to top 50,000 this yearNews While the CVE figures might be daunting, they won't all be relevant to your organization
By Emma Woollacott Published
News -
Microsoft patches six zero-days targeting Windows, Word, and moreNews Patch Tuesday update targets large number of vulnerabilities already being used by attackers
By Nicole Kobie Published
News -
Experts welcome EU-led alternative to MITRE's vulnerability tracking schemeNews The EU-led framework will reduce reliance on US-based MITRE vulnerability reporting database
By Ross Kelly Published
News -
Veeam patches Backup & Replication vulnerabilities, urges users to updateNews The vulnerabilities affect Veeam Backup & Replication 13.0.1.180 and all earlier version 13 builds – but not previous versions.
By Emma Woollacott Published
News -
Two Fortinet vulnerabilities are being exploited in the wild – patch nowNews Arctic Wolf and Rapid7 said security teams should act immediately to mitigate the Fortinet vulnerabilities
By Emma Woollacott Published
News -
Everything you need to know about Google and Apple’s emergency zero-day patchesNews A serious zero-day bug was spotted in Chrome systems that impacts Apple users too, forcing both companies to issue emergency patches
By Nicole Kobie Published
News -
Security experts claim the CVE Program isn’t up to scratch anymoreNews CVE data is vital in combating emerging threats, yet inaccurate ratings and lengthy wait times are placing enterprises at risk
By Emma Woollacott Published
News -
IBM AIX users urged to patch immediately as researchers sound alarm on critical flawsNews Network administrators should patch the four IBM AIX flaws as soon as possible
By Emma Woollacott Published
News -
Critical Dell Storage Manager flaws could let hackers access sensitive data – patch nowNews A trio of flaws in Dell Storage Manager has prompted a customer alert
By Ross Kelly Published
News -
Flaw in Lenovo’s customer service AI chatbot could let hackers run malicious code, breach networksNews Hackers abusing the Lenovo flaw could inject malicious code with just a single prompt
By Emma Woollacott Published
News -
Industry welcomes the NCSC’s new Vulnerability Research Initiative – but does it go far enough?News The cybersecurity agency will work with external researchers to uncover potential security holes in hardware and software
By Jane McCallion Published
News -
Hackers are targeting Ivanti VPN users again – here’s what you need to knowNews Ivanti has re-patched a security flaw in its Connect Secure VPN appliances that's been exploited by a China-linked espionage group since at least the middle of March.
By Emma Woollacott Published
News