NIST Vulnerability Database Ineffective
The National Institute of Standards and Technology's National Vulnerability Database has a backlog of over 27,000 unprocessed security vulnerabilities, undermining its utility and public trust.
Attackers exploit identity verification processes, particularly during onboarding and account recovery, to gain unauthorized access to corporate systems.
The National Institute of Standards and Technology's National Vulnerability Database has a backlog of over 27,000 unprocessed security vulnerabilities, undermining its utility and public trust.
New vulnerabilities increased by 67% between 2023 and 2025, with the median time to exploitation dropping to 1.6 days, highlighting the need for immediate vulnerability alerts.
The US Postal Service is moving forward with mail-in ballot restrictions, following a court's rejection of a request to block an executive order from President Donald Trump.
The National Security Agency has selected new leads for its cybersecurity directorate and Cybersecurity Collaboration Center, including David Imbordino and Bruce Jones.
Over 30 Red Hat npm packages were compromised to steal developer credentials in a supply-chain attack distributing the Miasma malware variant.
Attackers are exploiting a critical authentication-bypass vulnerability in Palo Alto Networks firewalls, allowing remote attackers to bypass security restrictions and establish a VPN connection.
Tina Peters, convicted of election-security breach, remains unapologetic and vows to fight in court to have her criminal record expunged after her prison sentence was commuted by Governor Polis.
Attackers are now exploiting the critical Windows Netlogon vulnerability CVE-2026-41089, allowing remote code execution on targeted domain controllers with a CVSS score of 9.8.
Cybersecurity threats to the 2026 midterm elections are targeting campaign systems, including email accounts, websites, and fundraising platforms, rather than voting machines or ballot-counting systems.