Listen "Vulnerabilities, CVEs and the attack surface"
Episode Synopsis
In this episode, we discuss whether vulnerability scores are still a viable tool when it comes to measuring cyber threats.
Both CVEs and CVSS are core security tools. But, our guest this week argues, they are often misused. In a worst case scenario, they add little to effective defence, and can divert security teams from the real threats.
Tod Beardsley is VP of security research at runZero, is on the board of the CVE Project, and is a former official at CISA.
Both CVEs and CVSS are core security tools. But, our guest this week argues, they are often misused. In a worst case scenario, they add little to effective defence, and can divert security teams from the real threats.
Tod Beardsley is VP of security research at runZero, is on the board of the CVE Project, and is a former official at CISA.
More episodes of the podcast Security Insights
Resilience in cyber: an agony aunt's view
18/12/2025
Insights Interview: Chris Dimitriadis, ISACA
13/11/2025
Ukraine, cyberwar and CNI
30/10/2025
Bug bounties: risks and rewards
16/10/2025
DDoS, geopolitics and AI
02/10/2025
Cyber skills: a crisis of our own making?
18/09/2025
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.