Attack Surface Management stories
Enterprises running ageing systems may gain a safer alternative to patching, as the new service flags flaws before vendors disclose them.
Enterprises are testing only about 32% of their attack surface, leaving many assets outside regular security checks as threats grow faster.
FedRAMP High approval lets federal agencies and suppliers use TotalCloud to secure sensitive cloud workloads with stricter controls.
Security teams may cut backlogs as validated HackerOne flaws are mapped into Wiz, linking exploit evidence to cloud assets for faster prioritisation.
Nearly half of organisations are leaving risky ports and services open, with midmarket firms taking up to 56 days to fix exposures.
Security teams can now rank cloud flaws by exploitability and impact, as validated HackerOne reports feed directly into Wiz's risk graph.
Security teams under pressure to prove real exploitability can now test live production systems for attack paths rather than theoretical flaws.
Verified access to Anthropic's restricted AI tools could help IRONSCALES test email defences against more realistic phishing and impersonation attacks.
The findings show many firms still leave internet-facing databases and admin tools open, giving attackers easy routes before flaws are even published.
More than half of North American SMBs lack basic email protections, leaving them more exposed to phishing, impersonation and fraud than UK peers.
Faster cyber attacks are forcing IT and security teams to act more quickly across large endpoint estates as Tanium expands its AI platform in APAC.
JupiterOne rolls out AI attack surface and vulnerability tools to help security teams map links, prioritise flaws and cut through alert overload.
Enterprises facing rising cyber risk will gain a single view of alerts and business impact as the firms combine security data and AI analytics.
Existing customers can now get AI-assisted threat hunting and response without extra cost, as attacks are moving faster than manual investigations.
Security teams gain wider visibility as Infoblox folds Axur into a new service that scans 40 million URLs a day for phishing and impersonation.
The tie-up could help security teams cut false alarms and patch faster as automated attacks shrink defenders’ reaction time.
Australian businesses face sharper reporting deadlines as Rapid7 opens early access to software that ties compliance to live security risk.
Businesses face faster-growing exposure risks as the security firm widens its portfolio with tools for vulnerabilities, mobile threats and patching.
Security teams could cut false positives and speed fixes as the new tool ties vulnerability alerts to live network device states.
Many firms are missing exposed systems and credentials, leaving attackers an easier route in as breaches hit 43% of UK businesses last year.