Attack Surface Research & Threat Landscape Insight​

The gap between vulnerability disclosure and in-the-wild exploitation is shrinking. In 2025, over 48,000 vulnerabilities were added to CVE.org. Research

What Has Happened Citrix has released patches for CVE-2026-3055, a Memory Overread vulnerability affecting NetScaler ADC and NetScaler Gateway appliances,

Most security vendors describe their threat intelligence as proactive. In practice, most of it is reactive – a repackaging of

When a critical vulnerability is disclosed, the clock starts immediately. Based on current median Time-to-Exploitation (TTE) data, organizations have days,

Validating that your organization is exposed to an actively exploited vulnerability is only half the problem. The other half is

Every vulnerability management program faces the same fundamental problem. The number of vulnerabilities reported each year far exceeds any team’s

Subscribe to our content

Don’t miss our future blog posts, insights and most relevant news.