惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

S
Secure Thoughts
C
Cybersecurity and Infrastructure Security Agency CISA
T
Tenable Blog
Project Zero
Project Zero
T
The Exploit Database - CXSecurity.com
T
Threat Research - Cisco Blogs
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
Cyberwarzone
Cyberwarzone
PCI Perspectives
PCI Perspectives
G
GRAHAM CLULEY
H
Hacker News: Front Page
Cloudbric
Cloudbric
Latest news
Latest news
N
News and Events Feed by Topic
C
CERT Recently Published Vulnerability Notes
Attack and Defense Labs
Attack and Defense Labs
SecWiki News
SecWiki News
Security Latest
Security Latest
MyScale Blog
MyScale Blog
阮一峰的网络日志
阮一峰的网络日志
Vercel News
Vercel News
The GitHub Blog
The GitHub Blog
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
Security Archives - TechRepublic
Security Archives - TechRepublic
V2EX - 技术
V2EX - 技术
B
Blog RSS Feed
L
LINUX DO - 最新话题
人人都是产品经理
人人都是产品经理
Last Week in AI
Last Week in AI
IT之家
IT之家
Jina AI
Jina AI
Y
Y Combinator Blog
博客园 - 聂微东
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
V
Visual Studio Blog
P
Privacy International News Feed
B
Blog
S
Schneier on Security
Application and Cybersecurity Blog
Application and Cybersecurity Blog
D
Darknet – Hacking Tools, Hacker News & Cyber Security
Hacker News - Newest:
Hacker News - Newest: "LLM"
Help Net Security
Help Net Security
D
DataBreaches.Net
博客园_首页
G
Google Developers Blog
I
InfoQ
量子位
大猫的无限游戏
大猫的无限游戏
S
Security @ Cisco Blogs

Omnissa

Discover which solution is best for you: VDI, DaaS, or RDSH From on-prem to cloud: how Horizon licensing adapts to you Inside the Forrester TEI findings: Workspace ONE UEM delivered 170% ROI As security continues to evolve, has your mobile strategy? Introducing automated enrollment for Horizon Cloud desktops with Workspace ONE UEM Omnissa and GEMA partner to empower organizations with a modern digital sovereignty solution Attention Omnissa Intelligence users: Show off your dashboard! How P&O Cruises and Cunard manage devices & IT support at sea Omnissa Solution Exchange: Discover additional ways to maximize your Omnissa investments Horizon Cloud on vSphere: Hybrid DaaS made easy 10 challenges that hold back Horizon success Omnissa named a Leader in the 2025 Gartner® Magic Quadrant™ for Desktop as a Service Omnissa scores highest in 4 out of 4 Use Cases in 2026 Gartner® Critical Capabilities for Endpoint Management Tools Enabling the Modern Workforce with Omnissa Workspace ONE and Samsung Knox Suite Point of view: The autonomous workspace will reshape the role of enterprise IT Introducing Workspace ONE UEM 2602: A feature packed release with updates across the board Why security fundamentals matter more than ever Android XR Management with Workspace ONE What's new with DEX for Horizon: expanding partner ecosystems and integrations Customer adoption grows for Omnissa Horizon deployments on Nutanix AHV Optimize secure, seamless workspaces with IGEL and Omnissa Omnissa Secure Access Suite delivers secure browser functionality with the Omnissa platform ICYMI: Highlights from our “App Management Reimagined” event Omnissa Pass: Native MFA for stronger, simpler security Modern education—any device, everywhere learning with smarter IT DEX is a value strategy: How Omnissa helps turn IT from cost center to value engine From fragmentation to fruition: Why a platform approach wins Mod Stack architecture: Rebuilding for flexibility, scalability, and resilience New Omnissa 2026 study finds shadow AI, security gaps, and device instability expose need for end-to-end IT observability Omnissa accelerates global market momentum with strategic board expansion and executive leadership appointment Enhanced VDI can help maximize productivity without breaking the bank Device Timeline: Precision troubleshooting for the modern IT team Omnissa Horizon on Nutanix AHV: One year of momentum Omnissa is named a Leader for the third consecutive year in the 2025 Gartner Magic Quadrant for Desktop as a Service Lessons from the Stryker incident: From access to impact Celebrating innovation in digital work: Announcing the 2026 Omnissa Customer Achievement Awards All About Mobile in 2: Mobile risk explained Three IT challenges that Omnissa Secure Access Suite aims to address Omnissa Sovereign Solution: The modern path to sovereign digital workspaces An Expectation—Secure by Design and Omnissa All about mobile in 2: Four million+ social engineering attacks Flying blind in the AI era: Why observability is key to scaling digital work Omnissa partners with Red Hat to offer more flexibility to Horizon 8 customers Omnissa App Volumes delivers industry-first on-demand Windows app delivery, drastically reducing costs of traditional app management Omnissa collaborates with Google Workspace Omnissa delivers secure, browser-based access to enterprise applications with Google Chrome Enterprise Premium Omnissa Workspace ONE brings centralized eSIM management to the enterprise Omnissa strengthens its digital work platform with new AI capabilities designed with trust and transparency at the core Omnissa unveils Workspace ONE Vulnerability Defense to transform security management across all endpoints and applications Omnissa strengthens its platform with IT consolidation and open ecosystem flexibility to give customers more choice and a better experience Horizon 2512 arrives with new capabilities for Amazon WorkSpaces Core Extending Horizon Cloud flexibility to OpenStack-based private clouds When “update” becomes the attack: what the Notepad++ incident teaches IT Omnissa leads the future of digital employee experience Deliver secure, simple modern digital workspaces with Horizon and IGEL Compress complexity and simplify healthcare IT for better care Introducing the next generation of Windows management with Workspace ONE UEM App lifecycle management with App Volumes: Now available for traditional PCs Optimize your retail operations at every touchpoint The next wave of the autonomous workspace is here: Omni now GA Announcing Self-Managed Pools on Horizon Cloud: More flexibility, broader use cases Unlock Horizon management savings with a special UEM and DEX offer Explore what's new in App Volumes 2506 and Dynamic Environment Manager 2506 Meet our AI-powered Data Explorer in Omnissa Intelligence Bridging the app gap and supporting Apple adoption with Horizon Omnissa announces Day 0 support for version 26 of Apple OS Horizon 8 2512: Delivering a more intuitive experience, broader platform support, and deeper hybrid cloud integration It's mission-critical that federal IT shift from reaction to readiness 4 trends that will reshape the autonomous workspace in 2026 Omnissa ranks highest across all four Use Cases in the Gartner® Critical Capabilities for Endpoint Management Tools report Omnissa announces winners of its inaugural Customer Achievement Awards Driving the future of endpoint management: Omnissa named a Leader in four 2025-2026 IDC MarketScape assessments for UEM Omnissa Value Center: Maximize your tech investment ROI From panic to presents: Holiday retail enablement made smooth by Omnissa Introducing the new Horizon Client for a consistent employee experience across platforms Omnissa recognized as a Leader across four IDC MarketScapes for Unified Endpoint Management Choice and simplicity delivered: Horizon 8 support for Nutanix AHV reaches general availability Workspace ONE supports Platform SSO with Entra ID via Secure Enclave Why IT teams resist change—and how to overcome it The top 5 takeaways from Omnissa ONE 2025 Las Vegas Greater deployment flexibility with Horizon Cloud and Platform9 5 things you didn’t know you could do in Omnissa Connect The platform imperative: From chaos to consolidation Workspace ONE Access supports Platform SSO for Apple macOS Simplify IT ops with Quickflows in Freestyle Orchestrator The modern enterprise thrives with Omnissa, Okta, and Google Omnissa and WWT launch new webinar series “Walk This Way” Horizon 8 on Nutanix AHV: A powerful new frontier in VDI Follow-up: Horizon 8 Term licenses now deployable in the public cloud Omnissa Listed in 2025 Gartner® Critical Capabilities for DEX Management Tools Workspace ONE includes new Apple features in latest release Security and management innovations Omnissa launches DEX Playbooks to boost help desk efficiency Workspace ONE integrates with Apple GitHub to automate DDM Celebrating excellence: Announcing the 2025 Omnissa Customer Achievement Award program Omnissa accelerates go-to-market momentum with key leadership appointments Horizon 8 2506: Featuring improved control and productivity Omnissa celebrates first year of independence highlighting growth, innovation and industry recognition Charting our own path: Reflections on our first year of independence Trust is priority one for Omnissa cloud services
Close the endpoint vulnerability gap to reduce risk and improve compliance
Cile Montgomery · 2025-11-14 · via Omnissa

Endpoint vulnerability management is nothing new, yet vulnerabilities continue to introduce too much risk. 

Despite the exponential growth in the number of Common Vulnerabilities and Exposures (CVEs), challenges in endpoint vulnerability management persist. In September 1999, the first CVE list was published with 321 entries. Today, over 314,000 CVE records exist. Despite ongoing efforts to prevent exploits, organizations are increasingly embracing proactive vulnerability reporting through initiatives like the CISA Secure by Design Pledge

The U.S. Government and other organizations are adopting more aggressive standards for resolving critical vulnerabilities, including known exploited vulnerabilities (KEVs), but there’s still a significant lag between the time it takes for a threat actor to exploit a vulnerability (5 days on average) and the time it takes for organizations to patch or mitigate their exposure (the median time is currently 38 days). Endpoints are often the weakest link in an organization's security, and hackers are well aware of this. (Source: 2025 Verizon DBIR, a.k.a. the Verizon Data Breach Investigations Report, page 31). 

It_takes_a_threat_actor_an_average_of_5_days_to_exploit_a_vulnerability.png

What is your window of exploitation for endpoint vulnerabilities?  

Even if you follow CISA, FedRAMP, and PCI DSS vulnerability management guidelines, the exploitation of KEVs happens much faster than the resolution of these vulnerabilities in end-user environments. Key metrics to consider include: 

  • The timeline for resolving CVEs carrying high risk, for example, those with known exploitation or criticality of 8 or higher on the CISA rating scale
  • The timeline and target resolution rate for CVEs in your environment 

Can you shorten the window of exploitation for endpoint vulnerabilities? 

Minimizing risk is crucial, which involves reducing the window of opportunity for exploitation. While it is clear that faster patching and mitigation are essential, organizations often face challenges. What we hear from customers is that remediations often take a couple of weeks at a minimum to implement. These workflows involve: 

  • Scanning the entire environment for vulnerabilities
  • Batching out requests for updates via IT Service Management (ITSM) tools
  • Implementing specific processes for urgent, high-risk threats posed by vulnerabilities 

Accelerating these processes can reduce exposure, but concerns include: 

  • Rolling out updates too quickly, leading to major failures or negative end-user experiences
  • Tracking the test environment failure metrics that are required for change control
  • Lack of visibility into the progress of updates, resulting in unexpected issues 

Resized_closing_the_loop.gif

How do you address vulnerabilities without the process becoming its own threat to your sanity and the performance of the business?  

Studying the processes that organizations follow today, we see significant opportunities to: 

  • Reduce the time spent evaluating the impact of and prioritizing vulnerabilities
  • Accelerate the delivery of information to end-user computing stakeholders
  • Implement built-in control and observability points to help people feel comfortable with accelerated rollouts of patches, updates, and mitigations. 

New solution addressing these issues in Beta at Omnissa 

Omnissa is kicking off this effort with Vulnerability Defense. At Beta, we present vulnerability information from CrowdStrike Falcon Exposure Management in the context of your endpoint deployment, so that you can see where your major liabilities lie and review suggested fixes. You can start with a controlled deployment, addressing your first group manually then allowing for automating remediations to subsequent populations.. Checkpoints are built into the process, so that you can see how things are performing in real time. And our digital employee experience (DEX) tools help you monitor and manage rollouts so that they don’t adversely impact your end users.  

Achieving compliance at scale requires efficiency. So how do you get away from manual processes—periodic scanning, ticket creation, and triage—to a more fluid approach to vulnerability management?  

CrowdStrike Falcon Exposure Management (purchased via CrowdStrike) required at Beta 

We partnered with CrowdStrike to integrate their vulnerability assessment capabilities with Omnissa Workspace ONE. CrowdStrike Falcon Exposure Management, a component of the CrowdStrike Falcon Endpoint Protection Platform, is required for the 2025 Beta and limited availability versions of Omnissa Vulnerability Defense. CrowdStrike Falcon Exposure Management is part of the CrowdStrike Falcon Endpoint Protection Platform and is purchased directly from CrowdStrike. Omnissa has several integrations with CrowdStrike, including API-based tagging via CrowdStrike Foundry and data sharing with CrowdStrike Falcon NG-SIEM. More information about CrowdStrike integrations here

Begin with application patching 

In our research, we see that endpoint teams spend about 80-90% of their time on application and OS patching. Our Beta solution includes comprehensive workflows that allow you to: 

  • Automatically assess vulnerabilities affecting your Workspace ONE managed endpoints
  • Perform risk-based prioritization of CVEs for remediation
  • Review recommended path for addressing application and OS vulnerabilities
  • Import and deploy pre-configured app updates from Workspace ONE Enterprise App Repository
  • Monitor and manage rollout through deployment tracking dashboards 

Reduce remediation time from weeks to days 

An over-the-air connection with devices is essential for proactive vulnerability management. With Omnissa Workspace ONE UEM, you have the connectivity you need to manage the full lifecycle of devices and support secure digital work.  

Workspace ONE Vulnerability Defense integrates vulnerability discovery and assessment with prioritization and remediation in UEM. This automated approach helps you quickly address vulnerabilities, reducing the time spent on manual tasks and allowing you to assess the success of patching and other mitigations from your Workspace ONE UEM console.  

Spend less time closing the loop. You can assess the success of endpoint vulnerability patching, updates, and other mitigations from your Workspace ONE UEM console. It is easier to confirm that vulnerabilities have been resolved without executing a comprehensive compliance scan.  

What's next? 

Learn more from our Vulnerability Defense Community webinar and register for the Beta.

Community_webinar_content.png

For more information on Vulnerability Defense, scheduled to launch in late 2025, please access the replay of our October 1st Vulnerability Defense Community webinar, where experts share our technical solution and talk about the broader topic of endpoint risk.  

Please apply to participate in our Vulnerability Defense Beta here.