Skip to content

// #risk

0 articles

Commentary tagged #risk

Opinion

Ransomware in Healthcare Is a Patient Safety Crisis, Not an IT Problem

The ransomware attack on ChipSoft paralysing 80% of Dutch hospitals and the Anubis attack on Signature Healthcare this week are not data breach incidents with clinical inconvenience as a side effect. They are patient safety events. The healthcare sector's continued treatment of ransomware as a cybersecurity problem rather than a clinical risk is costing lives.

CipherWatch Editorial

Security Intelligence Platform

Opinion

AI Infrastructure Is Accumulating Security Debt Faster Than Anyone Admits

LangFlow's actively exploited remote code execution vulnerability and this week's LiteLLM supply chain attack are not isolated incidents — they are early symptoms of an ecosystem that has scaled faster than its security practices. Organisations deploying AI infrastructure are inheriting technical debt they have not yet been asked to account for.

CipherWatch Editorial

Security Intelligence Platform

Opinion

The KEV List Is Not a Vulnerability Management Strategy

CISA's Known Exploited Vulnerabilities catalogue has become the de facto patch priority list for thousands of organisations — most of whom had no coherent strategy before it arrived. Treating the KEV list as a vulnerability management programme is a category error that leaves organisations systematically exposed to everything that has not yet been exploited.

CipherWatch Editorial

Security Intelligence Platform