TLDR: #infosec #cloud #devops #OpenSource #JC #MostlyHarmless 👋🏻🔒 Friendly British Security/Technology wonk. 😇🙏 Good guy wannabe. ✍🏻👽 Sci-fi author. 👦🏻👦🏻 Father to twins (one passed away 24 Feb 2024) with severe learning difficulties and other disabilities. 🦸🏻♀️ Husband to superhero wife. ⚖️ Solicitor (no longer practising law though). ✝️ To everything there is a season. 🔐👍🏻 Visit my website for secure/private methods of contacting me
Rob Pomeroy
@robpomeroy@infosec.exchange
infosec.exchange
I've released VulnTrends v1.2.0.
Rather than adding lots of new features, this update focuses on improving the foundations:
• Higher quality data
• Better analysis
• New explanatory pages describing each metric and its limitations
• Greater transparency into how the charts are produced
The aim is to make VulnTrends a useful reference for understanding vulnerability disclosure and remediation trends—not just another CVE counter.
Feedback is always welcome.
https://vulntrends.org
Release notes:
https://github.com/robpomeroy/vulntrends/releases/tag/v1.2.0
#cybersecurity #opensource #infosec #analytics #bugpocalpyse #vulnpocalypse
Mike Williamson
@sleepycat@infosec.exchange
Digital Transformation = Agile + APIs + AppSec Security Architecture, Programming.
infosec.exchange
"The nature of a #vulnpocalypse is that you’re going to be drowning in the deluge of the vulnerabilities – if you weren’t, it wouldn’t be a vulnpocalypse! Given that background, you need to step back and ask “how do we get out of this situation?”
And the answer is that you make foundational investments in systemic prevention of entire classes of vulnerabilities, even at the expense of having marginally high latency to fixing individual vulnerabilities."
https://alexgaynor.net/2026/jul/15/you-cant-bugfix-your-way-out-of-the-vulnpocalypse/
Chester Wisniewski 🇨🇦
@chetwisniewski@securitycafe.ca
Director, Global Field CISO at Sophos, frequent speaker and press go to. Said opinions are mine, not the company. Co-host of the Security Take(s) Two (@securitytaketwo) podcast.
securitycafe.ca
RE: https://techpolicy.social/@joebeone/116926768886588948
I rarely see a good take on the "vulnpocalypse", let alone from someone inside of the AI industry itself (Joshua Saxe excepted), but this one is valid and likely the best take I have seen in awhile. I highly suggest you give it a read.
#InfoSec #Vulnpocalypse
Quoting
You can't bug fix your way out of the vulnpocalypse · Alex Gaynor https://alexgaynor.net/2026/jul/15/you-cant-bugfix-your-way-out-of-the-vulnpocalypse/
Open quoted post
You've seen all posts