Glossary
Risk Assessment
A systematic process of identifying assets, the threats and vulnerabilities that could affect them, and the likelihood and impact of those risks materializing, used to prioritize security investments. It is a foundational input to any risk management or compliance program.
Recent coverage mentioning Risk Assessment
Enhancing OT Security with Cyber Deception Strategies
Implement cyber deception in OT to detect, deter, and understand threats targeting critical infrastructure. Gain vital intelligence from attacker interactions.
CVE-2026-48710: Kludex Starlette HTTP Smuggling for Auth Bypass
CVE-2026-48710 impacts Kludex Starlette, enabling HTTP request smuggling and authentication bypass via path injection. Actively exploited.
CVE-2021-23758: Ajax.NET RCE via Deserialization of Untrusted Data
CVE-2021-23758 in Ajax.NET Professional allows remote code execution via untrusted data deserialization, with CISA confirming active exploitation.
Black Hat 2026: The State of Security Vendors and AI's Influence
Analysis of Black Hat 2026 security vendor landscape, highlighting widespread AI integration and a market split between threat visibility and prevention tools.
Recorded Future Enhances Third-Party Risk with Unified Threat Intel
Recorded Future integrates threat intelligence and risk ratings into a unified third-party risk management platform to proactively identify vendor compromises.
Bendix EC80 Hidden RCE and DoS Flaws in Brake Controllers
NMFTA reveals Bendix EC80 heavy-truck brake controllers fixed critical, wirelessly reachable remote code execution and DoS flaws in a safety recall.
Advertisement