Millions of Vulnerabilities: One Checklist to Kill The Noise
/r/netsec 是一个聚合技术信息安全内容的社区平台,旨在为安全从业者、学生和研究人员提供有价值的信息。作者分享了一篇关于漏洞管理的文章,讨论了如何通过初步筛选和确认漏洞是否可达到来缩短大量漏洞列表。 2025-6-12 15:26:51 Author: www.reddit.com(查看原文) 阅读量:8 收藏

r/netsec icon

Go to netsec

r/netsec

/r/netsec is a community-curated aggregator of technical information security content. Our mission is to extract signal from the noise — to provide value to security practitioners, students, researchers, and hackers everywhere. ‎


Members Online

Hey all, started a blog series on Vulnerability Management. 4 articles posted already the last one is about when open you open the flood gate of a code or cloud scanner and you start drowning in findings!

This leads to thousands of findings for an SMB, millions for a big org. But vulns can’t all be worth fixing, right? This article walks through a first, simple way to shorten the list. Which is to triage every vuln and confirm if the bug is reachable in your reality.

Let me know if you have any comment to improve the blog or this article, would appreciate it!


文章来源: https://www.reddit.com/r/netsec/comments/1l9pblf/millions_of_vulnerabilities_one_checklist_to_kill/
如有侵权请联系:admin#unsafe.sh