home.social

#vulnerabilitymanagement — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #vulnerabilitymanagement, aggregated by home.social.

  1. Anthropic Overhauls Cyber Verification Program

    Anthropic is shaking up its approach to cybersecurity with a major overhaul of its Cyber Verification Program, combining it with Project Glasswing to supercharge security efforts. The move follows a successful six-month trial that helped partners uncover over 129,000 verified software vulnerabilities.

    osintsights.com/anthropic-over

    #CyberVerificationProgram #VulnerabilityManagement #SoftwareSecurity #EmergingThreats #Anthropic

  2. Your image scanner tells you what you shipped. It cannot tell you what the container runs now.

    A scanner reads the image: the packages and binaries baked in when the build finished. That is the right question to ask.

    primod.io/?utm_source=mastodon

    #ContainerSecurity #VulnerabilityManagement #RuntimeSecurity

  3. Zammad security alert: session hijacking and remote code execution

    CVE-2026-102489 concerns session hijacking that can lead to code execution as the Zammad service account on affected older installations. DIVD reports exploitation in a real incident.

    Zammad states that version 7.0 and later are not exploitable through this issue and recommends upgrading to 7.2.0.

    #Zammad #CyberSecurity #VulnerabilityManagement #SecPoint #Penetrator

  4. We did some improvements in GCVE extension - GCVE BCP-05-X-03 - Vulnerability Handling and Disclosure Timeline.

    We also review the alignment and interoperability with CSAF 2.1.

    Now there is a new object field entities to represent the entities in the handling timeline.

    🔗 GCVE BCP-05-X-03 gcve.eu/bcp/extension/gcve-bcp
    🔗 Commit with the changes to the extension github.com/gcve-eu/gcve.eu/com

    #csaf #gcve #cve #vulnerabilityManagement #vulnerability #openstandard #cra

Share on Mastodon

Enter the server where you have an account.