← BACK TO FEED
TAG

vulnerability management3 articles

CISA's Vulnerability Report Is a Masterclass in Déjà Vu

CISA's latest review finds that the most exploited software vulnerabilities in 2024–2025 belong to decades-old weakness classes — such as injection flaws, improper input validation, and path traversal — that should have been eliminated long ago, with seven of the top ten most frequent vulnerabilities falling into MITRE's "stubborn" or "unforgivable" categories. The agency argues the problem is not technical complexity but failures in organizational culture, developer workflows, and slow adoption of Secure by Design (SBD) practices. CISA is urging software vendors to take ownership of security outcomes by eliminating these longstanding flaws at the development stage, rather than continuing to burden defenders with an endless cycle of patches.

30 Aug 2026

Oligo Security Pulls In $60M to Guard Apps at Runtime

Oligo Security has raised $60 million in a new funding round, bringing its total funding to $140 million, with participation from several venture capital firms including Ballistic Ventures and Lightspeed Venture Partners. The Tel Aviv-based company, founded in 2022, offers a runtime security platform that provides real-time protection for application code, cloud workloads, and AI systems, helping organizations detect and block exploits, prioritize vulnerabilities, and prevent supply chain attacks. Oligo plans to use the new funding to accelerate product development and expand its global operations.

5 Aug 2026

An Executive's Inbox Was Silently Plundered for Five Months. Here's What That Tells Us About AI-Assisted Attacks

A stock exchange executive had their Outlook mailbox compromised for five months without anyone noticing. Five months.

4 Jun 2026