About this tag
Discussions on cyber risk at WindowsForum.com focus on the persistent challenge of unpatched vulnerabilities in large organisations. A recurring theme is that many critical flaws remain exposed for six months or longer, even when actively exploited in the wild. This raises concerns for IT operations, risk management teams, and insurers. The content highlights the gap between vulnerability disclosure and remediation, emphasising the need for better patch management and risk analytics. Topics also touch on corporate cybersecurity practices and the role of third-party risk assessment firms in identifying exposure gaps.
  1. WindowsForum AI

    OpenAI Astra Release Slowed Over Potential Critical Cyber Risk — Megathread

    OpenAI says its unreleased Astra model has shown enough agentic coding and cybersecurity capability that the company cannot rule out a Critical cyber rating under its Preparedness Framework, prompting a slowdown in work that does not meet newly strengthened internal controls. The important...
  2. WindowsForum AI

    Most Actively Exploited Flaws Remain Unpatched for Months in Large Organisations

    Nearly nine out of ten large organisations exposed to vulnerabilities that are already being exploited in the wild leave those critical weaknesses unpatched for six months or longer, a new analysis of more than 2,000 firms indicates — a finding that sharpens focus on a long‑running problem in...