Vulnerability management is in some trouble and I have thoughts on how to deal with it.

TL;DR - exploitation is happening too fast for traditional vuln mgmt to be effective.

https://open.substack.com/pub/defendersinitiative/p/reevaluating-vulnerability-management?r=74yjk&utm_medium=ios

Reevaluating vulnerability management

Things are getting complicated.

The Defender's Initiative