Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Qualys Blog

20 articles

Qualys Blog vendor 2d ago

The End of Point-in-Time Compliance: Why Continuous Audit Readiness Matters to You in the AI Era 

AI-driven threats are outpacing traditional audits. Discover how continuous monitoring, automated evidence collection, and risk-based remediation help securi...

Qualys Blog → Details

Qualys Blog vendor Qualys 2d ago

The Autonomous Engine Behind Remediation, and What Finally Makes It Safe

Executive Summary Vulnerability exploitation now happens at a speed that manual, ticket-based remediation can’t match.

Qualys Blog → Details

Qualys Blog vendor Oracle 4d ago

Oracle Critical Security Patch Update, September 2026 Review

Oracle released its September edition of Critical Security Patch Update. The update received patches for 673 security vulnerabilities.

Qualys Blog → Details

Qualys Blog vendor Microsoft Qualys 4d ago

Before You Patch. Why Patch Reliability Matters for Confident Deployment

Executive Summary Microsoft’s September 2026 security updates, KB5124008 and KB5124012, have been linked to USB audio failures on some Windows systems, highl...

Qualys Blog → Details

Qualys Blog vendor 5d ago

Automate Asset Isolation: Your Last Resort to Meet Remediation Deadlines

Executive Summary Remediation deadlines slip for reasons outside your control: a patch does not exist yet, a patch is delayed, or a remediation attempt fails...

Qualys Blog → Details

Qualys Blog vendor Sep 10

What Is ISPM? How It Differs from IAM, PAM, IGA, and IDaaS

Key Takeaways Identity Security Posture Management (ISPM) is the continuous risk and posture layer of the identity stack not a replacement for Identity and A...

Qualys Blog → Details

Qualys Blog vendor Amazon Sep 9

The Models That Found 10,000 Zero-Days Broke Into Three Companies Using Weak Passwords

The question of whether a Frontier AI model could find vulnerabilities that no human researcher had found was settled in April.

Qualys Blog → Details

Qualys Blog vendor Microsoft Sep 8

Microsoft Patch Tuesday, September 2026 Security Update Review

Microsoft kicks off September with its monthly Patch Tuesday release, delivering fixes for security vulnerabilities affecting its products. The security upda...

Qualys Blog → Details

Qualys Blog vendor Sep 8

4 Questions to Ask When Evaluating an Exposure Management Platform

Executive Summary Exposure management platforms are increasingly evaluated based on post-detection actions rather than detection itself.

Qualys Blog → Details

Qualys Blog vendor Microsoft Sep 2

Anatomy of a Silent Domain Takeover

Key Takeaways Modern AD attacks use legitimate protocols end-to-end, no malware, no exploit, nothing for signature tools to fingerprint. The evidence is alre...

Qualys Blog → Details

Qualys Blog vendor Aug 27

PCI DSS 4.0.1: Application Requirements You’re Being Assessed On in 2026

Key Takeaways Since March 31, 2025, all 51 former “best practice” requirements in PCI DSS 4.0 have been fully scored.

Qualys Blog → Details

Qualys Blog vendor Aug 26

Beyond Patching: What IT Teams Need to Know About Unfixable Exposures

Executive Summary Most IT teams still operate under a false binary: patch or accept risk. That assumption creates unnecessary operational pressure.

T1598

Qualys Blog → Details

Qualys Blog vendor Qualys Docker Kubernetes Aug 26

When an AI Agent Turned Attacker: What Qualys Sees Across Every Phase of the Hugging Face Kubernetes Intrusion 

On July 9, 2026, an autonomous AI agent escaped an OpenAI evaluation sandbox and conducted a multi-day intrusion into Hugging Face’s Kubernetes environment. ...

Qualys Blog → Details

Qualys Blog vendor Microsoft Qualys Aug 25

CVE-2026-69414 ShieldBreak Zero-Day: No Patch, and CISA BOD 26-04 Gives You 14 Days

Executive Summary ShieldBreak (CVE-2026-69414) is a zero-day elevation-of-privilege vulnerability in the Microsoft Malware Protection Engine used by Microsof...

1 IOC

Qualys Blog → Details

Qualys Blog vendor Microsoft Qualys Aug 20

ShieldBreak: The Windows Defender Zero-Day With No Patch — Detect It, Mitigate It, With Qualys

Executive Summary ShieldBreak (CVE-2026-69414) is a zero-day elevation-of-privilege vulnerability in the Microsoft Malware Protection Engine used by Microsof...

1 IOC

Qualys Blog → Details

Qualys Blog vendor Oracle Aug 19

Oracle Critical Patch Update, August 2026 Security Update Review

Oracle released its August edition of Critical Patch Update. The update received patches for 943 security vulnerabilities.

Qualys Blog → Details

Qualys Blog vendor Microsoft Aug 18

CVE-2026-68820 is in KEV. Here Is What CISA BOD 26-04 Actually Requires Now

Executive Summary CVE-2026-68820 is an actively exploited Windows vulnerability listed in CISA’s Known Exploited Vulnerabilities (KEV) Catalog, with a remedi...

1 IOC

Qualys Blog → Details

Qualys Blog vendor Aug 13

Why API Discovery Is Critical for Modern AppSec Programs

Hidden API Estate And AI-speed Recon Are Reshaping Modern Application Risk Key Takeaways Unknown APIs create unattributed exposure, and such exposure rarely ...

T1592

Qualys Blog → Details

Qualys Blog vendor Qualys Aug 12

Qualys Introduces Real-Time Cloud Security Posture Management (CSPM) for Faster Risk Detection and Remediation

Key Takeaways Cloud environments change continuously, while security still relies on periodic scans, leaving gaps where risks go undetected. That gap becomes...

T1598

Qualys Blog → Details

Qualys Blog vendor Microsoft Aug 11

Microsoft Patch Tuesday, August 2026 Security Update Review

The August 2026 Microsoft Patch Tuesday release delivers security fixes for vulnerabilities affecting a wide range of Microsoft products and services. As att...

Qualys Blog → Details

1 2 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA