This alert may not be shared outside your organization, Do Not Repost or send, place on other websites, List servers, or send to others via email, including other associations or parties. Members and Law enforcement use only. Contact us for any permissions. To do otherwise will result in the loss of membership.
Complete Story
09/09/2026
Amid the 'Patch Apocalypse,' Cyber Leaders Say Prioritizing Key
Government Technology
Arlington, Texas, CISO Bryce Carter likes a piece of advice that came from his city manager: “We can do anything, but we can’t do everything.”
Looking back at a summer in which monthly patch lists hit staggering highs, the advice holds. To put it in perspective, Microsoft’s July security updates addressed 663 common vulnerabilities and exposures, followed by another 457 in August, although totals vary depending on how analysts count them. But what is agreed upon is that level of patching is basically unprecedented.
In fact, some experts are referring to this new flood of AI-driven vulnerability discoveries as the “Patch Apocalypse.”
And so trying to apply every fix recommended by a software vendor becomes a numbers game that is difficult to win, Carter said. Instead, cybersecurity teams need to understand their own risk environments and separate critical vulnerabilities from lower-priority weaknesses before then applying fixes accordingly.
More InfoAlerts
The FRPA alert system distinguishes us from other groups by gathering and providing information to law enforcement, retailers AND financial institutions.
more informationResources
Your electronic library to help in fighting financial fraud for all of our partners.
more information
