Newsroom

News Article

AWPG: Phishing Activity Trends Report, Q1 2026

Fortra was highlighted in the Anti-Phishing Working Group (APWG) Phishing Activity Trends Report, 1st Quarter 2026 for its analysis of business email compromise (BEC) activity. Fortra examined thousands of BEC attacks in Q1 2026, helping shed light on how threat actors impersonate trusted parties to steal money and sensitive information and how those tactics are evolving. Excerpt: “Fortra found...
News Article

Cyber Security News: PoC Released for Windows Vulnerability That Allows Attackers to Cause Unrecoverable BSOD Crashes

Ricardo Narvaja’s vulnerability research is featured in Cyber Security News, examining CVE-2026-2636, a denial-of-service flaw in Windows’ Common Log File System driver. The vulnerability allows a low-privileged user to trigger an unrecoverable Blue Screen of Death through a simple proof of concept requiring only two API calls. 
News Article

​​Security Boulevard: Why We’ll Never Patch Everything, and That’s Okay​

In Security Boulevard, Tyler Reguly explains why the goal of patching every vulnerability is not just unrealistic but counterproductive. Drawing on more than two decades in vulnerability management, he argues that security teams need to stop chasing raw CVE counts and instead focus on risk, context, and asset intelligence to decide what truly matters.Originally published in ​Security Boulevard....
News Article

​​CSO: Cisos Advised to Rethink Vulnerability Management as Exploits Sharply Rise​

Tyler Reguly, Senior Manager of Security R&D at Fortra, was featured in a CSO article examining how security teams can adapt to the surge in vulnerabilities. He explains why public data remains a valuable tool for guiding risk-based strategies.Originally published in ​CSO.​Excerpt: ​“The reality is that public sources of intelligence are critical to managing your vulnerabilities,” Reguly argues. ...
News Article

CSO Online: July Patch Tuesday

Fortra’s Tyler Reguly offered insights on steps companies can take to reduce risk and pointed out a gap in Microsoft’s guidance that could lead to confusion.