Vulnerability & Web App Scanning Articles

Guidance on network, agent-based, credentialed and web application scanning: what each finds, how often to run them and how to prioritize what they report.

10 posts

What Is a Vulnerability Scan?
Sep 17, 2026Vulnerability Scanning

What Is a Vulnerability Scan?

A vulnerability scan is an automated security test that checks systems, networks and applications for known weaknesses. Learn how scans work, the types, and how they differ from penetration testing.

Read the post
Modern Web Applications Are Getting Harder to Secure: Why Basic Scans May Not Be Enough
Jul 15, 2026Vulnerability Scanning

Modern Web Applications Are Getting Harder to Secure: Why Basic Scans May Not Be Enough

Understand the importance of web application penetration testing in identifying vulnerabilities beyond simple vulnerability scanning.

Read the post
How Often Should You Run Vulnerability Scans?
Jun 24, 2026Vulnerability Scanning

How Often Should You Run Vulnerability Scans?

Learn how often to perform vulnerability scans to protect your business from security weaknesses and potential attacks.

Read the post
What NIST’s 2026 NVD Changes Mean for Vulnerability Management Program
Apr 22, 2026Vulnerability Scanning

What NIST’s 2026 NVD Changes Mean for Vulnerability Management Program

Stay informed on the NVD vulnerability enrichment changes 2026, focusing on prioritization and operational updates for vulnerabilities.

Read the post
CVSS Matters; Business Impact Decides the Order
Mar 4, 2026Vulnerability Scanning

CVSS Matters; Business Impact Decides the Order

CVSS alone is a blunt instrument. See how blending severity with business impact, asset value and real-world exploitability produces a remediation queue your team can actually act on.

Read the post
Top 5 API Security Risks Most Scanners Miss and How to Fix Them Before Attackers Find Them
Jul 2, 2025Vulnerability Scanning

Top 5 API Security Risks Most Scanners Miss and How to Fix Them Before Attackers Find Them

APIs now carry more sensitive data than most web apps, and most scanners miss the risks. See the top API vulnerabilities and how targeted testing catches them.

Read the post
Beyond the Obvious: Why Overlooked Industries Need Vulnerability Scanning Too
May 21, 2025Vulnerability Scanning

Beyond the Obvious: Why Overlooked Industries Need Vulnerability Scanning Too

Healthcare and education handle high-value data with lean teams. See why regular scanning and continuous monitoring are the highest-leverage controls you can add.

Read the post
Trust Is Currency: Why Website Security Matters More Than Ever
Apr 23, 2025Vulnerability Scanning

Trust Is Currency: Why Website Security Matters More Than Ever

Website security is now a conversion metric. See how SSL/TLS hygiene and content security policies protect both revenue and brand trust.

Read the post
Log4j Vulnerability
Mar 4, 2022Vulnerability Scanning

Log4j Vulnerability

Log4j reset how the industry thinks about supply-chain risk. Revisit the vulnerability, the mitigation steps and the vendor checks that should now be standard.

Read the post
Vulnerability Scanning Frequency
Mar 4, 2022Vulnerability Scanning

Vulnerability Scanning Frequency

Quarterly ASV scans are the floor, not the ceiling. Get a risk-based framework for how often to scan externally and internally to actually reduce exposure.

Read the post