The presentation discusses the importance of vulnerability intelligence and provides tips on how to navigate the vulnerabilities scene. It emphasizes the need to move from managing vulnerabilities to vulnerability intelligence and provides factors to prioritize vulnerability management.
- 70% of CVEs have a connection to the top 10 attack techniques
- Four factors to prioritize vulnerability management: exploitability, scannability, popularity, and mitigation
- Automation is key to navigating the world of big vulnerability data
The speaker highlights the difficulty in defining critical vulnerabilities and the need for more information to help prioritize vulnerabilities. The vfeed.io team's vulnerability database, which has been maintained for 10 years, provides much-needed information to help organizations prioritize vulnerabilities based on factors such as exploitability, scannability, popularity, and mitigation.