Security teams are faced with more alerts than they can handle. SecurityScorecard and the Cyentia Institute estimate that organizations fix only 10% of the vulnerabilities in their software each month. That's not a good outcome for software security — nor for overworked application security and security operations teams.
The post EPSS vs. CVSS: Exploit prediction could change the game on software risk management appeared first on Security Boulevard.