41554 blogs · [ { "id": "01a0d897-d9cd-70d4-908b-e6d42a108195", "title": "CISA BOD 26-04 Timelines for Three Linux Kernel CVEs", "url": "https://blog.qualys.com/product-tech/2026/09/23/cisa-bod-26-04-timelines-for-three-linux-kernel-cves", "published_at": "2026-09-23T15:00:00+00:00" }, { "id": "01a0b5c6-8747-734d-9253-d96a55b2877a", "title": "The End of Point-in-Time Compliance: Why Continuous Audit Readiness Matters to You in the AI Era ", "url": "https://blog.qualys.com/product-tech/2026/09/17/end-of-point-in-time-compliance-continuous-audit-readiness", "published_at": "2026-09-17T22:52:48+00:00" }, { "id": "01a0b5c6-8748-71fb-b592-6cc02ff8cffd", "title": "The Autonomous Engine Behind Remediation, and What Finally Makes It Safe", "url": "https://blog.qualys.com/product-tech/2026/09/17/the-autonomous-engine-behind-remediation-and-what-finally-makes-it-safe", "published_at": "2026-09-17T19:05:17+00:00" }, { "id": "01a0b5c6-8749-73f3-b7c1-da1cf57c4ae2", "title": "Oracle Critical Security Patch Update, September 2026 Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/09/16/oracle-critical-security-patch-update-september-2026-review", "published_at": "2026-09-16T14:15:08+00:00" }, { "id": "01a0b5c6-8749-73f3-b7c1-da1cf64676d4", "title": "Before You Patch. Why Patch Reliability Matters for Confident Deployment", "url": "https://blog.qualys.com/product-tech/2026/09/15/before-you-patch-why-patch-reliability-matters-for-confident-deployment", "published_at": "2026-09-15T18:00:53+00:00" }, { "id": "01a0b5c6-8749-73f3-b7c1-da1cf699271b", "title": "Automate Asset Isolation: Your Last Resort to Meet Remediation Deadlines", "url": "https://blog.qualys.com/product-tech/2026/09/15/automate-asset-isolation-cisa-kev-deadlines", "published_at": "2026-09-15T15:00:00+00:00" }, { "id": "01a0b5c6-8749-73f3-b7c1-da1cf7804452", "title": "What Is ISPM? How It Differs from IAM, PAM, IGA, and IDaaS", "url": "https://blog.qualys.com/product-tech/2026/09/10/what-is-ispm-vs-iam-pam-iga-idaas", "published_at": "2026-09-10T08:54:26+00:00" }, { "id": "01a0b5c6-8749-73f3-b7c1-da1cf8718763", "title": "The Models That Found 10,000 Zero-Days Broke Into Three Companies Using Weak Passwords", "url": "https://blog.qualys.com/qualys-insights/2026/09/09/the-models-that-found-10000-zero-days-broke-into-three-companies-using-weak-passwords", "published_at": "2026-09-09T15:00:00+00:00" }, { "id": "01a0b5c6-8749-73f3-b7c1-da1cf951c40e", "title": "Microsoft and Adobe Patch Tuesday, September 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/09/08/microsoft-patch-tuesday-september-2026-security-update-review", "published_at": "2026-09-08T19:11:05+00:00" }, { "id": "01a0b5c6-8749-73f3-b7c1-da1cfa402867", "title": "4 Questions to Ask When Evaluating an Exposure Management Platform", "url": "https://blog.qualys.com/product-tech/2026/09/08/questions-evaluating-exposure-management-platform", "published_at": "2026-09-08T15:57:05+00:00" }, { "id": "01a0b5c6-8749-73f3-b7c1-da1cfac17197", "title": "Anatomy of a Silent Domain Takeover", "url": "https://blog.qualys.com/product-tech/2026/09/02/anatomy-of-a-silent-domain-takeover-ad-real-time-monitoring", "published_at": "2026-09-02T15:00:00+00:00" }, { "id": "01a08239-ca83-70f8-929d-89fa67174eb4", "title": "PCI DSS 4.0.1: Application Requirements You’re Being Assessed On in 2026", "url": "https://blog.qualys.com/product-tech/2026/08/27/pci-dss-4-0-1-application-requirements-youre-being-assessed-on-in-2026", "published_at": "2026-08-27T17:52:38+00:00" }, { "id": "01a08239-ca83-70f8-929d-89fa677a667a", "title": "Beyond Patching: What IT Teams Need to Know About Unpatchable Exposures", "url": "https://blog.qualys.com/product-tech/2026/08/26/beyond-patching-unpatchable-exposures-it-ops", "published_at": "2026-08-26T15:00:00+00:00" }, { "id": "01a08239-ca83-70f8-929d-89fa68358357", "title": "When an AI Agent Turned Attacker: What Qualys Sees Across Every Phase of the Hugging Face Kubernetes Intrusion ", "url": "https://blog.qualys.com/product-tech/2026/08/26/hugging-face-ai-agent-intrusion-qualys-detection-mapping", "published_at": "2026-08-26T15:00:00+00:00" }, { "id": "01a08239-ca83-70f8-929d-89fa683a968d", "title": "CVE-2026-69414 ShieldBreak Zero-Day: No Patch, and CISA BOD 26-04 Gives You 14 Days", "url": "https://blog.qualys.com/product-tech/2026/08/24/shieldbreak-the-windows-defender-zero-day-with-no-patch-detect-it-mitigate-it-with-qualys", "published_at": "2026-08-25T00:48:03+00:00" }, { "id": "01a08239-ca83-70f8-929d-89fa686a7c2b", "title": "Oracle Critical Patch Update, August 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/08/19/oracle-critical-patch-update-august-2026-security-update-review", "published_at": "2026-08-19T13:49:27+00:00" }, { "id": "01a08239-ca83-70f8-929d-89fa69008032", "title": "CVE-2026-68820 is in KEV. Here Is What CISA BOD 26-04 Actually Requires Now", "url": "https://blog.qualys.com/product-tech/2026/08/18/cve-2026-68820-kev-bod-26-04-requirements", "published_at": "2026-08-18T18:06:38+00:00" }, { "id": "01a08239-ca83-70f8-929d-89fa694f0f58", "title": "Why API Discovery Is Critical for Modern AppSec Programs", "url": "https://blog.qualys.com/misc/2026/08/13/why-api-discovery-is-critical-for-modern-appsec-programs", "published_at": "2026-08-13T17:00:00+00:00" }, { "id": "01a08239-ca83-70f8-929d-89fa6a376469", "title": "Qualys Introduces Real-Time Cloud Security Posture Management (CSPM) for Faster Risk Detection and Remediation", "url": "https://blog.qualys.com/product-tech/2026/08/12/qualys-introduces-real-time-cloud-security-posture-management-cspm-for-faster-risk-detection-and-remediation", "published_at": "2026-08-12T19:34:38+00:00" }, { "id": "01a0c511-46bd-71d5-bdce-2e9618b5f005", "title": "Microsoft and Adobe Patch Tuesday, August 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/patch-tuesday/2026/08/11/microsoft-patch-tuesday-august-2026-security-update-review", "published_at": "2026-08-11T21:55:19+00:00" }, { "id": "01a0c511-46bd-71d5-bdce-2e96190f5b0a", "title": "Audit Fix: Audit Readiness for the Post-Mythos Era", "url": "https://blog.qualys.com/product-tech/2026/08/10/audit-readiness-frontier-ai-audit-fix", "published_at": "2026-08-10T12:30:00+00:00" }, { "id": "01a0c51e-dc9b-7252-b8ca-4ea973288b01", "title": "Zero-Day Remediation Meets Operational Resiliency", "url": "https://blog.qualys.com/product-tech/2026/08/03/zero-day-remediation-operational-resiliency-trurisk-eliminate", "published_at": "2026-08-03T16:00:49+00:00" }, { "id": "01a0c51e-dc9b-7252-b8ca-4ea973ebac20", "title": "Agent Val Now Validates the Entire Attack Surface: From Network to Host", "url": "https://blog.qualys.com/product-tech/2026/08/03/truconfirm-cloud-agent-endpoint-exploit-validation", "published_at": "2026-08-03T15:45:19+00:00" }, { "id": "01a0c51e-dc9b-7252-b8ca-4ea9742bedac", "title": "Say Hello to Agent Insta: Closing the Detection Gap in Exposure Management at Machine Speed ", "url": "https://blog.qualys.com/product-tech/2026/08/03/instascan-agent-insta-scanless-detection", "published_at": "2026-08-03T12:45:00+00:00" }, { "id": "01a0c51e-dc9b-7252-b8ca-4ea974f2ba2b", "title": "Operationalize AI Governance Across Shadow GenAI, MCP, and Agentic Workloads with Qualys TotalAI", "url": "https://blog.qualys.com/product-tech/2026/07/29/ai-governance-evidence-gap-totalai", "published_at": "2026-07-29T12:15:00+00:00" }, { "id": "01a0c51e-dc9b-7252-b8ca-4ea975e11635", "title": "Qualys Expands Serverless Security with Vulnerability Scanning for AWS Lambda", "url": "https://blog.qualys.com/product-tech/2026/07/27/aws-lambda-vulnerability-scanning-serverless-security", "published_at": "2026-07-27T16:48:06+00:00" }, { "id": "01a0c51e-dc9b-7252-b8ca-4ea9767bccee", "title": "The Sub-10-Minute Cloud Takeover: How Exposed IAM Keys, Misconfiguration and AI Are Rewriting the Rules of Cloud Breaches", "url": "https://blog.qualys.com/product-tech/2026/07/27/the-sub-10-minute-cloud-takeover-how-exposed-iam-keys-misconfiguration-and-ai-are-rewriting-the-rules-of-cloud-breaches", "published_at": "2026-07-27T15:00:00+00:00" }, { "id": "01a0c51e-dc9b-7252-b8ca-4ea976f46b1f", "title": "RefluXFS: A Linux Kernel Local Privilege Escalation to Root in XFS (CVE-2026-64600) ", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/07/22/refluxfs-a-linux-kernel-local-privilege-escalation-to-root-in-xfs-cve-2026-64600", "published_at": "2026-07-22T16:23:46+00:00" }, { "id": "01a0c51e-dc9b-7252-b8ca-4ea9773db7c9", "title": "Oracle Critical Patch Update, July 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/07/22/oracle-critical-patch-update-july-2026-security-update-review", "published_at": "2026-07-22T14:19:19+00:00" }, { "id": "01a0c51e-dc9b-7252-b8ca-4ea977de86ed", "title": "Manual Patching Can’t Outrun AI. Automated Remediation Can.", "url": "https://blog.qualys.com/product-tech/2026/07/21/ai-vulnerability-discovery-automated-remediation", "published_at": "2026-07-21T15:05:36+00:00" }, { "id": "01a0c51e-dc9b-7252-b8ca-4ea9780c6aed", "title": "CVE-2026-8933: Local Privilege Escalation in Set-Capabilities snap-confine", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/07/21/cve-2026-8933-snap-confine-local-privilege-escalation", "published_at": "2026-07-21T15:02:12+00:00" }, { "id": "01a0c52a-3c6c-73cb-816b-e4622860f643", "title": "Is Your Security Program Ready for AI-Speed Application Exploitation?", "url": "https://blog.qualys.com/qualys-insights/2026/07/20/public-facing-application-attacks-initial-access-vector", "published_at": "2026-07-20T17:00:00+00:00" }, { "id": "01a0c52a-3c6c-73cb-816b-e46228c81ac1", "title": "Top Five Compliance Audit Software and Tools: Mastering Modern Regulatory Risk", "url": "https://blog.qualys.com/product-tech/2026/07/20/top-compliance-audit-software-tools", "published_at": "2026-07-20T16:00:00+00:00" }, { "id": "01a0c52a-3c6c-73cb-816b-e462298648d3", "title": "Microsoft and Adobe Patch Tuesday, July 2026 Security Update Review ", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/07/14/microsoft-and-adobe-patch-tuesday-july-2026-security-update-review", "published_at": "2026-07-14T21:23:09+00:00" }, { "id": "01a0c52a-3c6c-73cb-816b-e4622a031006", "title": "How Qualys ETM Identity Detects Identity-Based Attacks Faster", "url": "https://blog.qualys.com/product-tech/2026/07/14/how-qualys-etm-identity-detects-responds-to-identity-based-attacks", "published_at": "2026-07-14T18:00:00+00:00" }, { "id": "01a0c52a-3c6c-73cb-816b-e4622a838758", "title": "How to Meet a 3-Day Remediation SLA & Comply with CISA BOD 26-04", "url": "https://blog.qualys.com/product-tech/2026/07/09/cisa-bod-26-04-3-day-remediation-sla", "published_at": "2026-07-09T19:30:37+00:00" }, { "id": "01a0c52a-3c6c-73cb-816b-e4622b3490c6", "title": "When AI-Accelerated Discovery Outruns Patching, Exploitability Proof Decides What Gets Fixed First", "url": "https://blog.qualys.com/qualys-insights/2026/07/08/qualys-joins-chainguard-athena-turning-coalition-scale-findings-into-validated-action", "published_at": "2026-07-08T22:15:08+00:00" }, { "id": "01a0c52a-3c6c-73cb-816b-e4622bb9ae68", "title": "FortiBleed: Credential Reuse, Legacy Hashes, and the Risk of Internet-Exposed FortiGate Devices ", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/07/08/fortibleed-fortigate-credential-reuse-internet-exposed", "published_at": "2026-07-08T17:38:12+00:00" }, { "id": "01a0c52a-3c6c-73cb-816b-e4622c432ba8", "title": "Operationalizing Day Minus Seven: The Cloud-Native ROC", "url": "https://blog.qualys.com/product-tech/2026/07/08/cloud-roc-day-minus-seven-etm", "published_at": "2026-07-08T14:56:19+00:00" }, { "id": "01a0c52a-3c6c-73cb-816b-e4622cacdeb5", "title": "Qualys Joins Cisco Cloud Control Studio as a Launch Partner to Bring Risk Intelligence to Agentic Operations", "url": "https://blog.qualys.com/product-tech/2026/07/07/qualys-cisco-cloud-control-studio-launch-partner", "published_at": "2026-07-07T15:00:00+00:00" }, { "id": "01a0c52a-3c6c-73cb-816b-e4622d55bbb1", "title": "Is Your AppSec Program Built to Close the OWASP Top 10 2025 Coverage Gap? ", "url": "https://blog.qualys.com/product-tech/2026/07/06/owasp-top-10-2025-appsec-coverage-gap", "published_at": "2026-07-06T15:00:00+00:00" }, { "id": "01a0c535-7292-717e-acde-1067d6e428ee", "title": "CERT-In’s AI Vulnerability Blueprint: Why Indian CISOs Need Machine-Speed Risk Operations in the Post-Mythos Era ", "url": "https://blog.qualys.com/product-tech/2026/06/24/cert-in-ai-vulnerability-blueprint-machine-speed-risk-operations", "published_at": "2026-06-24T08:42:34+00:00" }, { "id": "01a0c535-7292-717e-acde-1067d71a8c34", "title": "3 Paths to Upgrade Windows 11 before 24H2 End of Servicing (EOL)", "url": "https://blog.qualys.com/product-tech/2026/06/23/windows-11-24h2-eol-version-drift-trurisk-eliminate", "published_at": "2026-06-23T15:00:00+00:00" }, { "id": "01a0c535-7292-717e-acde-1067d74f4f51", "title": "CNAPP’s New Normal: Hyper-Prioritization and Autonomous Remediation at Cloud Scale", "url": "https://blog.qualys.com/product-tech/2026/06/22/cnapps-new-normal-hyper-prioritization-and-autonomous-remediation-at-cloud-scale", "published_at": "2026-06-22T18:13:23+00:00" }, { "id": "01a0c535-7292-717e-acde-1067d79bbb16", "title": "Oracle Critical Patch Update, June 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/06/18/oracle-critical-patch-update-june-2026-security-update-review", "published_at": "2026-06-18T14:30:21+00:00" }, { "id": "01a0c535-7292-717e-acde-1067d82853ad", "title": "What Changed in OWASP Top 10 2025 and Recommendations for Each Category", "url": "https://blog.qualys.com/qualys-insights/2026/06/15/what-changed-in-owasp-top-10-2025-and-recommendations-for-each-category", "published_at": "2026-06-15T16:00:00+00:00" }, { "id": "01a0c535-7292-717e-acde-1067d8c8ad0b", "title": "How Federal Agencies Can Activate a Risk Operations Center (ROC) to Meet CISA BOD 26-04", "url": "https://blog.qualys.com/qualys-insights/2026/06/10/how-federal-agencies-can-activate-a-risk-operations-center-roc-to-meet-cisa-bod-26-04", "published_at": "2026-06-10T19:40:17+00:00" }, { "id": "01a0c535-7292-717e-acde-1067d99632a0", "title": "Turning Millions of Risks Into One Actionable List", "url": "https://blog.qualys.com/product-tech/2026/06/10/turning-millions-of-risks-into-one-actionable-list", "published_at": "2026-06-10T15:00:00+00:00" }, { "id": "01a0c535-7292-717e-acde-1067d9b31556", "title": "Microsoft and Adobe Patch Tuesday, June 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/06/09/microsoft-and-adobe-patch-tuesday-june-2026-security-update-review", "published_at": "2026-06-09T20:52:07+00:00" }, { "id": "01a0c535-7292-717e-acde-1067da320404", "title": "Advancing Cybersecurity in the Age of Frontier AI: Qualys Steps into Project Glasswing", "url": "https://blog.qualys.com/product-tech/2026/06/05/advancing-cybersecurity-in-the-age-of-frontier-ai-qualys-steps-into-project-glasswing", "published_at": "2026-06-05T12:30:00+00:00" }, { "id": "01a0c535-7292-717e-acde-1067da8d79b9", "title": "From Operating Model to Product: How We Built the ROC for Detection-Speed Remediation", "url": "https://blog.qualys.com/qualys-insights/2026/06/04/from-operating-model-to-product-how-we-built-the-roc-for-detection-speed-remediation", "published_at": "2026-06-04T21:17:17+00:00" }, { "id": "01a0c53f-94e7-71df-839a-e159ce2e0af1", "title": "Stop Patching at Human Speed: Peer-to-Peer (P2P) Distribution Closes the Remediation Gap Before Attackers Strike ", "url": "https://blog.qualys.com/product-tech/2026/06/03/stop-patching-at-human-speed-peer-to-peer-p2p-distribution-closes-the-remediation-gap-before-attackers-strike", "published_at": "2026-06-03T15:00:00+00:00" }, { "id": "01a0c53f-94e7-71df-839a-e159ce54b7dd", "title": "The HazyBeacon Protocol – How Malware Weaponizes Amazon Web Services (AWS) Lambda Function URLs", "url": "https://blog.qualys.com/qualys-insights/2026/06/02/hazybeacon-aws-lambda-function-url-command-control-abuse", "published_at": "2026-06-02T16:00:00+00:00" }, { "id": "01a0c53f-94e7-71df-839a-e159cf1463af", "title": "Extending EOL/EOS Software Intelligence Across Containers, Kubernetes, and Modern Workloads", "url": "https://blog.qualys.com/product-tech/2026/05/28/eol-eos-software-detection-containers-kubernetes", "published_at": "2026-05-28T16:00:00+00:00" }, { "id": "01a0c53f-94e7-71df-839a-e159cfa5f501", "title": "CVE-2026-46333: Local Root Privilege Escalation and Credential Disclosure in the Linux Kernel ptrace Path", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/05/20/cve-2026-46333-local-root-privilege-escalation-and-credential-disclosure-in-the-linux-kernel-ptrace-path", "published_at": "2026-05-20T15:40:19+00:00" }, { "id": "01a0c53f-94e7-71df-839a-e159cfd582df", "title": "Inside the 2026 Verizon DBIR: What One Billion Records Revealed About Vulnerability Remediation", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/05/19/inside-the-2026-verizon-dbir-what-one-billion-records-revealed-about-vulnerability-remediation", "published_at": "2026-05-19T16:27:42+00:00" }, { "id": "01a0c53f-94e7-71df-839a-e159d0c0d762", "title": "Achieve FedRAMP High M365 Security: Governing with Qualys SSPM and SCuBA", "url": "https://blog.qualys.com/product-tech/2026/05/14/achieve-federal-grade-m365-security-governing-with-qualys-sspm-and-scuba", "published_at": "2026-05-14T16:00:00+00:00" }, { "id": "01a0c53f-94e7-71df-839a-e159d13e8ded", "title": "Stop Chasing Threats: Top 3 Insights from the SANS Attack Surface Management Survey", "url": "https://blog.qualys.com/product-tech/2026/05/14/sans-attack-surface-management-survey-2025-insights", "published_at": "2026-05-14T15:00:00+00:00" }, { "id": "01a0c53f-94e7-71df-839a-e159d2013889", "title": "FedRAMP High Authorized: Qualys TotalCloud CNAPP – From Compliance to Defense ", "url": "https://blog.qualys.com/product-tech/2026/05/14/qualys-totalcloud-achieves-fedramp-high-authorization-for-cloud-security-and-compliance-assurance", "published_at": "2026-05-14T12:45:00+00:00" }, { "id": "01a0c53f-94e7-71df-839a-e159d2d73ea5", "title": "Microsoft and Adobe Patch Tuesday, May 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/05/12/microsoft-patch-tuesday-may-2026-security-update-review", "published_at": "2026-05-12T19:50:45+00:00" }, { "id": "01a0c53f-94e7-71df-839a-e159d30b2845", "title": "Bringing AI Code Security into Qualys ETM", "url": "https://blog.qualys.com/product-tech/2026/05/11/bringing-ai-code-security-into-qualys-etm", "published_at": "2026-05-11T14:00:00+00:00" }, { "id": "01a0c548-1f13-73a2-bdba-a1e7aeee3bcc", "title": "Dirty Frag: Using the Page Caches as an Attack Surface", "url": "https://blog.qualys.com/product-tech/vulnmgmt-detection-response/2026/05/09/dirty-frag-using-the-page-caches-as-an-attack-surface", "published_at": "2026-05-09T07:22:34+00:00" }, { "id": "01a0c548-1f13-73a2-bdba-a1e7af90f1cd", "title": "Before the Breach, There Was a Test Environment", "url": "https://blog.qualys.com/qualys-insights/2026/05/06/before-the-breach-there-was-a-test-environment-qa-cloud-security", "published_at": "2026-05-06T16:00:00+00:00" }, { "id": "01a0c548-1f13-73a2-bdba-a1e7aff73f8f", "title": "Qualys TotalAI Achieves FedRAMP Moderate (FedRAMP Certified Class C) Authorization", "url": "https://blog.qualys.com/product-tech/2026/05/05/qualys-totalai-achieves-fedramp-moderate-fedramp-certified-class-c-authorization", "published_at": "2026-05-05T15:00:00+00:00" }, { "id": "01a0c548-1f13-73a2-bdba-a1e7b046be82", "title": "Converge Connect: Unlock Lower Premiums with Proven Qualys Security", "url": "https://blog.qualys.com/product-tech/2026/05/05/converge-connect-unlock-lower-premiums-with-proven-qualys-security", "published_at": "2026-05-05T12:45:00+00:00" }, { "id": "01a0c548-1f13-73a2-bdba-a1e7b0c6ab2f", "title": "Handling the Vulnerability Surge in the Post-Mythos Era", "url": "https://blog.qualys.com/product-tech/2026/05/01/handling-the-vulnerability-surge-in-the-post-mythos-era", "published_at": "2026-05-01T23:59:24+00:00" }, { "id": "01a0c548-1f13-73a2-bdba-a1e7b1780f0e", "title": "Don’t Wait for a Patch. Mitigate RedSun Zero-Day Risk in Microsoft Defender Today ", "url": "https://blog.qualys.com/qualys-insights/2026/04/22/dont-wait-for-a-patch-mitigate-redsun-risk-in-microsoft-defender-today", "published_at": "2026-04-22T17:12:34+00:00" }, { "id": "01a0c548-1f13-73a2-bdba-a1e7b1bb9314", "title": "Oracle Critical Patch Update, April 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/04/22/oracle-critical-patch-update-april-2026-security-update-review", "published_at": "2026-04-22T14:34:25+00:00" }, { "id": "01a0c548-1f13-73a2-bdba-a1e7b2aaa668", "title": "Enterprise Remediation Benchmark: How Does Your Organization Compare?", "url": "https://blog.qualys.com/qualys-insights/2026/04/20/enterprise-patch-remediation-benchmark-2026", "published_at": "2026-04-20T15:30:00+00:00" }, { "id": "01a0c548-1f13-73a2-bdba-a1e7b377aa43", "title": "Qualys VMDR and TotalCloud™ Now Available on Oracle Cloud Marketplace", "url": "https://blog.qualys.com/product-tech/2026/04/15/qualys-vmdr-totalcloud-now-available-oracle-cloud-marketplace", "published_at": "2026-04-15T18:02:07+00:00" }, { "id": "01a0c548-1f13-73a2-bdba-a1e7b3ad2cd7", "title": "Microsoft and Adobe Patch Tuesday, April 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/04/14/microsoft-and-adobe-patch-tuesday-april-2026-security-update-review", "published_at": "2026-04-14T20:16:14+00:00" }, { "id": "01a0c551-05ad-73d4-b475-41e663a4e6a5", "title": "Anatomy of an Autonomous AI Agent Risk: How Qualys ETM Connects the Dots on OpenClaw", "url": "https://blog.qualys.com/product-tech/2026/04/13/anatomy-autonomous-ai-agent-risk-qualys-etm-openclaw", "published_at": "2026-04-13T15:44:43+00:00" }, { "id": "01a0c551-05ad-73d4-b475-41e663f5dad8", "title": "Deep Scan: Expanding Vulnerability Detection Beyond Traditional Boundaries", "url": "https://blog.qualys.com/product-tech/2026/04/13/deep-scan-expanding-vulnerability-detection-beyond-traditional-boundaries", "published_at": "2026-04-13T15:00:00+00:00" }, { "id": "01a0c551-05ad-73d4-b475-41e6646d89bd", "title": "The Mythos Inflection Point: Dealing With the Upcoming Vulnerability Disclosure Avalanche and Compressed Exploitation Window", "url": "https://blog.qualys.com/product-tech/2026/04/10/the-mythos-inflection-point-dealing-with-the-upcoming-vulnerability-disclosure-avalanche-and-compressed-exploitation-window", "published_at": "2026-04-10T17:26:25+00:00" }, { "id": "01a0c551-05ad-73d4-b475-41e665113bb9", "title": "Scaling Modern AppSec: Moving from Static Profiles to AI-Powered Scan Optimization", "url": "https://blog.qualys.com/product-tech/2026/04/09/scaling-modern-appsec-moving-from-static-profiles-to-ai-powered-scan-optimization", "published_at": "2026-04-09T16:10:52+00:00" }, { "id": "01a0c551-05ad-73d4-b475-41e6660f7914", "title": "12 Best Practices for Securing AWS Cloud in 2026", "url": "https://blog.qualys.com/product-tech/2026/04/09/1aws-cloud-security-best-practices-guide", "published_at": "2026-04-09T15:00:00+00:00" }, { "id": "01a0c551-05ad-73d4-b475-41e6665555d3", "title": "Signals from the Cloud Security Forecast 2026: Cloud Risk Is Scaling through Design, Not Disruption", "url": "https://blog.qualys.com/qualys-insights/2026/04/07/qualys-cloud-security-forecast-2026-risk-trends-insights", "published_at": "2026-04-07T15:00:00+00:00" }, { "id": "01a0c551-05ad-73d4-b475-41e6665ae0d4", "title": "Why Every Enterprise Needs a Risk Operations Center (ROC)", "url": "https://blog.qualys.com/qualys-insights/2026/04/06/why-every-enterprise-needs-a-risk-operations-center-roc", "published_at": "2026-04-06T20:00:57+00:00" }, { "id": "01a0c551-05ad-73d4-b475-41e66703473d", "title": "Optimizing Risk Discovery and Remediation with Qualys Gateway Service (QGS)", "url": "https://blog.qualys.com/product-tech/2026/03/30/optimizing-risk-discovery-and-remediation-with-qualys-gateway-service-qgs", "published_at": "2026-03-30T15:00:00+00:00" }, { "id": "01a0c551-05ad-73d4-b475-41e667739ac2", "title": "The Rise of Managed Risk Operations: How the New Qualys mROC Portal Helps Partners Scale the Risk Operations Center", "url": "https://blog.qualys.com/product-tech/2026/03/24/the-rise-of-managed-risk-operations-how-the-new-qualys-mroc-portal-helps-partners-scale-the-risk-operations-center", "published_at": "2026-03-24T14:00:00+00:00" }, { "id": "01a0c551-05ad-73d4-b475-41e668546d59", "title": "Meet Agent Val: Closing the Validation Gap in Exposure Management at Machine Speed with Agentic AI", "url": "https://blog.qualys.com/product-tech/2026/03/23/meet-agent-val-closing-the-validation-gap-in-exposure-management-at-machine-speed-with-agentic-ai", "published_at": "2026-03-23T12:45:00+00:00" }, { "id": "01a0c559-4c6d-710e-b1f7-64310edd90ac", "title": "Threat Research Report: The Broken Physics of Remediation", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/03/23/the-broken-physics-of-remediation", "published_at": "2026-03-23T12:45:00+00:00" }, { "id": "01a0c559-4c6d-710e-b1f7-64310f8e8ece", "title": "From Vision to Real-time Threat Intelligence: TruLens for ETM", "url": "https://blog.qualys.com/product-tech/2026/03/23/from-vision-to-real-time-threat-intelligence-trulens-for-etm", "published_at": "2026-03-23T12:45:00+00:00" }, { "id": "01a0c559-4c6d-710e-b1f7-64310fe18646", "title": "Bringing Continuous Assessment to Harbor: Scan on Push, Stay Secure Over Time", "url": "https://blog.qualys.com/product-tech/2026/03/22/integrate-qscanner-with-harbor-to-unify-devsecops-container-scanning", "published_at": "2026-03-23T04:30:00+00:00" }, { "id": "01a0c559-4c6d-710e-b1f7-64310ff830a2", "title": "MCP Servers Are the New Shadow IT for AI", "url": "https://blog.qualys.com/product-tech/2026/03/19/mcp-servers-shadow-it-ai-qualys-totalai-2026", "published_at": "2026-03-19T15:00:00+00:00" }, { "id": "01a0c559-4c6d-710e-b1f7-643110410215", "title": "5 Steps to Turn Compliance Checks into Audit Outcomes", "url": "https://blog.qualys.com/product-tech/2026/03/18/continuous-audit-readiness-5-steps-audit-outcomes-qualys", "published_at": "2026-03-18T15:00:00+00:00" }, { "id": "01a0c559-4c6d-710e-b1f7-643110a16469", "title": "CVE-2026-3888: Important Snap Flaw Enables Local Privilege Escalation to Root", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/03/17/cve-2026-3888-important-snap-flaw-enables-local-privilege-escalation-to-root", "published_at": "2026-03-17T19:20:02+00:00" }, { "id": "01a0c559-4c6d-710e-b1f7-643110a4229e", "title": "Countering Current Geopolitical Cyber Threats With Qualys", "url": "https://blog.qualys.com/product-tech/2026/03/17/geopolitical-cyber-threats-cisa-cvie-qualys-2026", "published_at": "2026-03-17T16:03:33+00:00" }, { "id": "01a0c559-4c6d-710e-b1f7-64311141b3c1", "title": "The New Era of Application Security: Reasoning-Based Agents, Runtime Reality, and Risk Intelligence", "url": "https://blog.qualys.com/product-tech/2026/03/17/new-era-application-security-reasoning-agents-runtime-risk-2026", "published_at": "2026-03-17T15:00:00+00:00" }, { "id": "01a0c559-4c6d-710e-b1f7-6431121d0b9e", "title": "CrackArmor: Critical AppArmor Flaws Enable Local Privilege Escalation to Root", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/03/12/crackarmor-critical-apparmor-flaws-enable-local-privilege-escalation-to-root", "published_at": "2026-03-12T21:32:56+00:00" }, { "id": "01a0c559-4c6d-710e-b1f7-64311299882e", "title": "Microsoft and Adobe Patch Tuesday, March 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/03/10/microsoft-patch-tuesday-march-2026-security-update-review", "published_at": "2026-03-10T19:11:23+00:00" }, { "id": "01a0c561-c7a3-71ad-903d-6ac24c92fa3c", "title": "From Shadow Models to Audit-Ready AI Security: A Practical Path with Qualys TotalAI", "url": "https://blog.qualys.com/product-tech/2026/03/10/from-shadow-models-to-audit-ready-ai-security-a-practical-path-with-qualys-totalai", "published_at": "2026-03-10T15:00:00+00:00" }, { "id": "01a0c561-c7a3-71ad-903d-6ac24cb3d3a8", "title": "Cyber Essentials Plus in 2026: Strengthened Controls, UK Cyber Reality & How Qualys Supports Compliance", "url": "https://blog.qualys.com/product-tech/2026/03/02/cyber-essentials-plus-2026-compliance", "published_at": "2026-03-02T19:40:15+00:00" }, { "id": "01a0c561-c7a3-71ad-903d-6ac24cd97f21", "title": "How Security Tool Misuse Is Reshaping Cloud Compromise", "url": "https://blog.qualys.com/qualys-insights/2026/02/19/how-security-tool-misuse-is-reshaping-cloud-compromise", "published_at": "2026-02-19T17:00:00+00:00" }, { "id": "01a0c561-c7a3-71ad-903d-6ac24d0d2cb8", "title": "New: AI-Powered Patch Reliability Scoring—Predict Patch Impact Before You Deploy", "url": "https://blog.qualys.com/product-tech/2026/02/18/new-ai-powered-patch-reliability-scoring-predict-patch-impact-before-you-deploy", "published_at": "2026-02-18T21:35:23+00:00" }, { "id": "01a0c561-c7a3-71ad-903d-6ac24df32832", "title": "Qualys Recognized as a Leader in the 2026 Forrester Wave™ for CNAPP", "url": "https://blog.qualys.com/product-tech/2026/02/17/qualys-recognized-as-a-leader-in-the-2026-forrester-wave-for-cnapp", "published_at": "2026-02-17T16:41:23+00:00" }, { "id": "01a0c561-c7a3-71ad-903d-6ac24e3c1d3b", "title": "Active Directory Attacks Demystified: Pass-the-Hash (PtH), Pass-the-Ticket (PtT), and Beyond", "url": "https://blog.qualys.com/product-tech/2026/02/11/qualys-etm-detect-pass-the-hash-pass-the-ticket-attacks", "published_at": "2026-02-12T07:36:07+00:00" }, { "id": "01a0c561-c7a3-71ad-903d-6ac24f042cd1", "title": "Microsoft and Adobe Patch Tuesday, February 2026 Security Update Review", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/02/10/microsoft-patch-tuesday-february-2026-security-update-review", "published_at": "2026-02-10T20:51:28+00:00" }, { "id": "01a0c561-c7a3-71ad-903d-6ac24ffd5b57", "title": "TruConfirm: Autonomous, Agent-Led, Safe Exploit Validation for Real-World Risk Reduction", "url": "https://blog.qualys.com/product-tech/2026/02/04/truconfirm-ending-vulnerability-guesswork-with-proof-inside-etm", "published_at": "2026-02-04T17:00:00+00:00" }, { "id": "01a0c561-c7a3-71ad-903d-6ac250f55c7a", "title": "Mutagen Astronomy: From Discovery to CISA Recognition—A Seven-Year Journey", "url": "https://blog.qualys.com/vulnerabilities-threat-research/2026/02/02/mutagen-astronomy-discovery-to-kev", "published_at": "2026-02-02T19:19:24+00:00" } ] posts Claim your blog
Back to blog.qualys.com
Blog · corpus.blog/blogs/blog.qualys.com/posts

blog.qualys.com

blog.qualys.com

2026