Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Qualys Blog

14 articles

Qualys Blog vendor Qualys 2d ago

Operationalize AI Governance Across Shadow GenAI, MCP, and Agentic Workloads with Qualys TotalAI

Key Takeaways AI adoption has outpaced enterprise controls, with AI and LLM workloads appearing faster than security teams can inventory or approve them. AI ...

T1598

Qualys Blog → Details

Qualys Blog vendor Amazon Qualys 4d ago

Qualys Expands Serverless Security with Vulnerability Scanning for AWS Lambda

Key Takeaways Serverless functions have become a core building block for modern cloud and AI-native applications. With AWS Lambda, developers build and scale...

T1598

Qualys Blog → Details

Qualys Blog vendor 4d ago

The Sub-10-Minute Cloud Takeover: How Exposed IAM Keys, Misconfiguration and AI Are Rewriting the Rules of Cloud Breaches

Key Takeaways Two real-world cloud attacks reached meaningful impact in less than ten minutes despite pursuing entirely different objectives. Both attackers ...

T1592

Qualys Blog → Details

Qualys Blog vendor Qualys Linux Jul 22

RefluXFS: A Linux Kernel Local Privilege Escalation to Root in XFS (CVE-2026-64600) 

Executive summary Qualys Threat Research Unit (TRU) identified CVE-2026-64600, a race condition in the Linux kernel’s XFS filesystem copy-on-write path. An a...

T1548 T1068 1 IOC

Qualys Blog → Details

Qualys Blog vendor Oracle Jul 22

Oracle Critical Patch Update, July 2026 Security Update Review

Oracle released its third quarterly edition of this year’s Critical Patch Update. The update received patches for 1449 security vulnerabilities.

Qualys Blog → Details

Qualys Blog vendor Microsoft Qualys Jul 21

Manual Patching Can’t Outrun AI. Automated Remediation Can.

Executive Summary AI is rapidly transforming vulnerability discovery, outpacing many security teams’ ability to adapt. Microsoft’s July 2026 Patch Tuesday ad...

Qualys Blog → Details

Qualys Blog vendor Qualys Linux Jul 21

CVE-2026-8933: Local Privilege Escalation in Set-Capabilities snap-confine

The Qualys Threat Research Unit (TRU) has identified a Local Privilege Escalation (LPE) vulnerability in snap-confine (CVE-2026-8933). This flaw allows an un...

T1548 T1068 1 IOC

Qualys Blog → Details

Qualys Blog vendor Jul 20

Is Your Security Program Ready for AI-Speed Application Exploitation?

Why public-facing applications are now the top breach path, and why traditional vulnerability management was not built for it. Key Takeaways Shift to Primary...

T1598

Qualys Blog → Details

Qualys Blog vendor Qualys Jul 20

Top Five Compliance Audit Software and Tools: Mastering Modern Regulatory Risk

Executive Summary Manual audit preparation no longer scales across hybrid, cloud, endpoint, and application environments. Compliance monitoring software must...

Qualys Blog → Details

Qualys Blog vendor Microsoft Adobe Jul 14

Microsoft and Adobe Patch Tuesday, July 2026 Security Update Review 

Microsoft’s July 2026 Patch Tuesday delivers security updates for a broad range of products and services, including several vulnerabilities that pose signifi...

Qualys Blog → Details

Qualys Blog vendor Qualys Jul 14

How Qualys ETM Identity Detects Identity-Based Attacks Faster

Key Takeaways Identity-based attacks are among the fastest and most effective intrusion methods because valid credentials let attackers operate as trusted us...

T1598

Qualys Blog → Details

Qualys Blog vendor Jul 9

How to Meet a 3-Day Remediation SLA & Comply with CISA BOD 26-04

Key Takeaways CISA BOD 26–04 mandates remediation of the publicly exposed, highest-risk, known-exploited vulnerabilities within 3 days. The directive applies...

Qualys Blog → Details

Qualys Blog vendor Qualys Jul 8

When AI-Accelerated Discovery Outruns Patching, Exploitability Proof Decides What Gets Fixed First

Why Qualys joined the Athena coalition, and what it means for how you prioritize risk. Qualys is proud to have joined Athena, the industry coalition Chaingua...

T1598

Qualys Blog → Details

Qualys Blog vendor Fortinet Jul 8

FortiBleed: Credential Reuse, Legacy Hashes, and the Risk of Internet-Exposed FortiGate Devices 

Key Takeaways FortiBleed refers to June 2026 public reporting of large-scale credential exposure and abuse targeting internet-reachable FortiGate management ...

Qualys Blog → Details

FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA