Common Vulnerabilities and Exposures on the Rise According to Qualys Threat Research Unit

Published:

spot_img

Qualys Threat Research Unit: Rise in Common Vulnerabilities and Exposures

The Qualys Threat Research Unit (TRU) has recently released alarming findings that common vulnerabilities and exposures (CVE) have increased by 30% between January and mid-July of 2024. This rise in CVE count, from 17,114 in 2023 to 22,254 in 2024, highlights the growing complexity of software and the widespread use of technology in today’s world.

The analysis conducted by the TRU reveals that a small subset of 0.91% of the reported vulnerabilities have been weaponized, posing a significant risk to cybersecurity. These weaponized exploits are actively being used by threat actors through ransomware, malware, and other malicious activities. Furthermore, there has been a noticeable increase in the weaponization of older CVEs identified before 2024, indicating a concerning trend in cybersecurity threats.

One specific vulnerability that has been trending on the dark web is CVE-2023-43208 NextGen Mirth Connect Java XStream, with a high Qualys Vulnerability Score of 95/100. This vulnerability particularly affects systems used by healthcare organizations, underscoring the importance of proactive cybersecurity measures for critical sectors.

Saeed Abbasi, Product Manager of Vulnerability Research at Qualys TRU, emphasizes the need for businesses to shift towards a more proactive and preventative approach to cybersecurity. By implementing continuous monitoring, rapid patch management, and a deep understanding of evolving threats, organizations can significantly reduce their vulnerability to cyberattacks and protect their critical assets in an interconnected world.

This rise in CVEs serves as a stark reminder for organizations to prioritize cybersecurity and stay ahead of evolving threats in order to ensure trust and resilience in today’s digital landscape.

spot_img

Related articles

Recent articles

INC Ransom’s Affiliate Model Threatens Global Critical Infrastructure in 2025

INC Ransom's Affiliate Model Threatens Global Critical Infrastructure in 2025 Australia's Cyber Security Centre (ACSC) has issued a new advisory regarding INC Ransom, a group...

Real Chemistry Strengthens Position as Tier-One Healthcare Partner with 14% Year-Over-Year Growth in 2025

Real Chemistry Strengthens Position as Tier-One Healthcare Partner with 14% Year-Over-Year Growth in 2025 NEW YORK: Real Chemistry has announced its fiscal results for the...

Congress Must Strengthen Cyber Oversight to Counter China’s Aggressive Intrusions

Congress Must Strengthen Cyber Oversight to Counter China's Aggressive Intrusions In January 2026, reports emerged detailing a significant cyber espionage campaign by the People's Republic...

Noida International Airport Advances Toward Launch as Security Clearance Paves Way for Final Aviation License

Noida International Airport Advances Toward Launch as Security Clearance Paves Way for Final Aviation License Greater Noida — The long-awaited opening of Noida International Airport,...