SentinelOne and Tenable find attackers are targeting vendor ecosystems
SentinelOne published joint market analysis with Tenable showing attackers increasingly target edge-device vendor ecosystems rather than individual CVEs.
Exposure data and runtime detection aligned on the same vendor attack surfaces 79% of the time, with only 21% overlap at vulnerability level.
AI-driven discovery compresses vulnerability identification from months to hours, with exploit code emerging about a week after disclosure.
Median remediation time for known vulnerabilities is five months, leaving a widening gap between patch cycles and attacker execution.
54% of organizations running F5 products had at least one exposed, actively exploited vulnerability; Citrix remediation median was 461 days.