Skip to main content

CareScope Watch/Cybersecurity/August 6, 2026

Attackers keep using vulnerabilities that already have patches

CISA's Known Exploited Vulnerabilities catalog lists flaws confirmed to be under active exploitation. A recurring share of them are in remote access and file transfer products used by small organizations, and patches existed before the attacks.

Why it matters

Small practices are rarely breached by novel techniques. They are breached through an unpatched remote access appliance nobody owns.

What it means for your practice

Ask your IT provider to check your equipment against the catalog and to tell you, in writing, who is responsible for patching each device and how quickly.