CVE management

Broadcom Bets Big on Spring Ecosystem Security | ECI Research

Broadcom Bets Big on Spring Ecosystem Security | ECI Research

Broadcom has released the largest Spring security update in the framework’s history, introducing commercial-first CVE-only patches and a SLSA Level 3-validated Java supply chain. AI-accelerated threat discovery has broken traditional patching cycles, and Broadcom’s response sets a new benchmark for open source stewardship under commercial cover. ECI Research examines what this means for enterprise risk posture, developer workflows, and the competitive landscape.

Broadcom Bets Big on Spring Ecosystem Security | ECI Research Read More »

Financial Services Faces a Two-Front Cyber Threat in 2026

Financial Services Faces a Two-Front Cyber Threat in 2026

Black Kite’s 2026 State of Financial Services report documents a simultaneous rise in direct ransomware attacks and vendor ecosystem vulnerabilities. Q1 2026 ransomware incidents jumped 76% year-over-year while critical CVEs across finance-concentrated vendors rose 387%. ECI Research examines what this two-front threat means for ITDMs and security teams.

Financial Services Faces a Two-Front Cyber Threat in 2026 Read More »