The AI Remediation Bottleneck: Why the Software Supply Chain Demands Radical Openness For years, the DevSecOps movement has operated on a foundational premise that if you detect a vulnerability, you triage it, patch it, and redeploy. This cycle assumes th... See more
Here's the number that frames all of this: CVE submissions are up 263% since 2020, and NIST enriched nearly 42,000 of them in 2025, more than any prior year. Even that wasn't enough to keep pace, so in April 2026, NIST gave up on analyzing every CVE and m... See more
How Can the National Design Studio Standardize Federal Websites? The focus on a standardized UX is built on four primary goals: - A “One Government” approach that moves the U.S. Web Design System beyond a toolkit and into a strict brand standard; the goal... See more
Automated Discovery of Vulnerabilities: Attackers are becoming more comfortable using AI in their efforts, including creating maps to find lingering pockets of implicit trust in networks, roles and services.
“These seams, where modernization hasn’t fully ... See more
Automated Discovery of Vulnerabilities: Attackers are becoming more comfortable using AI in their efforts, including creating maps to find lingering pockets of implicit trust in networks, roles and services. “These seams, where modernization hasn’t fully ... See more