Picus Security announces Exposure Validation capability & Exposure Score metric

PICUS security today announced Picus Exposure Validation, allowing security teams to verify the exploitability of vulnerabilities based on their unique environments. The new capability continuously tests security controls against real-world attack techniques, identifying which vulnerabilities are truly exploitable and which can safely be deprioritized. Picus also announced the Picus Exposure Score, an evidence-based, context-aware metric…

Read More

US CISA extends MITRE CVE, CWE programs with last-minute contract extension, prevents shutdown

In an eleventh-hour move, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) ensured that the Common Vulnerabilities and Exposures (CVE) and Common Weakness Enumeration (CWE) programs did not lapse. The move will ensure that the MITRE Corporation will continue operating the CVE program for at least another 11 months after federal cybersecurity officials confirmed that they temporarily…

Read More