Skip to content
Surge in Exploitation of Vulnerabilities in 2026

Surge in Exploitation of Vulnerabilities in 2026

First seen 6 Oct 2026, 19:01 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 6, 2026 at 20:08 UTC
  • •32.1% of vulnerabilities were exploited before detection in the first half of 2025.
  • •Microsoft and Cisco were among the top targeted vendors for vulnerabilities.
  • •The rise in zero-day exploitation emphasizes the need for improved threat intelligence.

In 2026, threat actors increasingly exploit vulnerabilities, with a significant rise in exploitation. A report by VulnCheck indicates that 32.1% of vulnerabilities in the Known Exploited Vulnerabilities (KEV) catalog were weaponized before detection or within 24 hours of disclosure. This marks a 8.5% increase from the previous year. The first half of 2025 saw 432 new vulnerabilities added to the KEV list, already surpassing half of the total CVEs exploited in 2024. Major targets include Microsoft and Cisco, with a notable focus on content management systems and network edge devices. The trend highlights the growing urgency for organizations to enhance their threat intelligence capabilities and response strategies against fast-evolving threats.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2025-01-01
VulnCheck report released
VulnCheck reported that 32.1% of vulnerabilities in the KEV catalog were exploited before detection or within 24 hours of disclosure.
www.infosecurity-magazine.com
2025-06-30
432 new vulnerabilities added to KEV
VulnCheck added 432 new vulnerabilities to its KEV list in the first half of 2025, indicating a significant increase in exploitation.
www.infosecurity-magazine.com
2025-12-31
Total CVEs exploited in 2024
VulnCheck reported a total of 768 CVEs exploited in 2024, with the first half of 2025 already exceeding half of this total.
www.infosecurity-magazine.com

More articles in this cluster (2)

Following this threat?

Track S1ngularity/nx and Cisco in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

What percentage of vulnerabilities are exploited quickly?
32.1% of vulnerabilities in the KEV catalog were weaponized before detection or within 24 hours of disclosure.
Which vendors are most targeted?
Microsoft and Cisco are among the top targeted vendors, with numerous vulnerabilities reported.
How can organizations improve their defenses?
Organizations should enhance their threat intelligence capabilities and response strategies to address the increasing speed of exploitation.