How to Get Going with CTEM When You Don’t Know Where to Start

October 4, 2024 at 06:00AM CTEM is a strategic framework to assess and manage cyber risk, consisting of stages like Scoping, Discovery, Prioritization, Validation, and Mobilization. Implementing CTEM can be complex initially, but understanding the stages and using the right tools can strengthen an organization’s security. XM Cyber offers a unified platform to simplify CTEM … Read more

CVSS 4.0 Offers Significantly More Patching Context

November 7, 2023 at 03:52PM The latest version of the Common Vulnerability Scoring System (CVSS version 4.0) allows organizations to assess and manage the risk posed by security bugs more effectively. It introduces new metrics that enable a dynamic and context-sensitive evaluation of vulnerabilities. CVSS 4.0 provides a more tailored risk management approach and allows … Read more

Why Do CVE Scores Need Real-World Context to Prioritize?

October 25, 2023 at 03:11PM The CVSS severity rating lacks real-world context, making it difficult for companies to prioritize fixes. Many vulnerabilities are harder to exploit than indicated by their CVSS scores. Factors such as exploitability in default configurations and specific attack conditions should be considered. The upcoming CVSS 4.0 update does not fully address … Read more