Common Vulnerabilities and Exposures on the Rise According to Qualys Threat Research Unit

Published:

spot_img

Qualys Threat Research Unit: Rise in Common Vulnerabilities and Exposures

The Qualys Threat Research Unit (TRU) has recently released alarming findings that common vulnerabilities and exposures (CVE) have increased by 30% between January and mid-July of 2024. This rise in CVE count, from 17,114 in 2023 to 22,254 in 2024, highlights the growing complexity of software and the widespread use of technology in today’s world.

The analysis conducted by the TRU reveals that a small subset of 0.91% of the reported vulnerabilities have been weaponized, posing a significant risk to cybersecurity. These weaponized exploits are actively being used by threat actors through ransomware, malware, and other malicious activities. Furthermore, there has been a noticeable increase in the weaponization of older CVEs identified before 2024, indicating a concerning trend in cybersecurity threats.

One specific vulnerability that has been trending on the dark web is CVE-2023-43208 NextGen Mirth Connect Java XStream, with a high Qualys Vulnerability Score of 95/100. This vulnerability particularly affects systems used by healthcare organizations, underscoring the importance of proactive cybersecurity measures for critical sectors.

Saeed Abbasi, Product Manager of Vulnerability Research at Qualys TRU, emphasizes the need for businesses to shift towards a more proactive and preventative approach to cybersecurity. By implementing continuous monitoring, rapid patch management, and a deep understanding of evolving threats, organizations can significantly reduce their vulnerability to cyberattacks and protect their critical assets in an interconnected world.

This rise in CVEs serves as a stark reminder for organizations to prioritize cybersecurity and stay ahead of evolving threats in order to ensure trust and resilience in today’s digital landscape.

spot_img

Related articles

Recent articles

Webinar: Uncovering Suspicious APK Files in Wedding Card and Loan App Scams

The surge of malicious APK files in cyber fraud schemes, such as fake wedding invitations and instant loan applications, has become a growing concern....

Skylon Partners with COBNB to Launch COBNB+ Featuring L’Occitane en Provence Hotel Amenities

Skylon Partners with COBNB for a Luxurious Hospitality Experience in Kuala Lumpur Introduction to the New Partnership In an exciting development for the hospitality scene in...

Understanding CISA KEV: Key Insights and Tools for Security Teams

Understanding the CISA Known Exploited Vulnerability (KEV) Catalog The Cybersecurity and Infrastructure Security Agency (CISA) maintains the Known Exploited Vulnerability (KEV) catalog, a resource designed...

Dark Web Leak Sparks WFH Job Scams; Prayagraj Police Freeze ₹2 Crore in Fraudulent Funds

Rising Cybercrime in Prayagraj: A New Target Shifting Tactics of Cybercriminals In Prayagraj, the landscape of cybercrime is evolving. Previously, scammers predominantly targeted victims through enticing...