• NIS2 compliance
    • Knowledge Base
      • The NIS & NIS2 Directives
      • New in the NIS2 Directive
      • NIS2 sectors overview
      • Risk management requirements
      • Supply chain security requirements
      • Cyber hygiene requirements
      • 11 steps to compliance
      • Frequently asked questions
    • Resources
      • NIS2 Reference Guide
      • Upgrade your defense to comply with NIS2
      • How the NIS2 Directive will impact you
      • NIS2 local resources
      • NIS2 in Norway
    • We support compliance
      • How we support NIS & NIS2 compliance
      • Automated & continuous risk assessments
      • Compliance packages for NIS & NIS2
      • Free NIS & NIS2 consultation
      • Book a platform demo
  • Platform
    • Platform
      • Exposure management
      • Vulnerability management
      • Attack Surface Management (ASM)
      • External Attack Surface Management (EASM)
    • Products
      • System & Network Security
      • Web Application Security
      • Cloud Security (CSPM)
      • API Security
      • Phishing Simulation & Awareness Training
    • Features
      • Active Directory Security
      • OT Security
      • PCI ASV scanning
    • Pricing
    • Free trial
    • Quote
    • Request demo/meeting
  • Services
    • Certification Programs
    • Success Programs
  • MSSPs
  • Solutions
    • Attack vectors
      • Business critical systems
      • Web applications
      • Cloud-native platforms
      • Operational Technology (OT)
      • Internet of Things (IoT)
      • APIs
      • Employees
      • Remote workforce
      • Office networks & equipment
    • Threat vectors
      • Ransomware
      • Software vulnerabilities
      • Phishing & social engineering
      • Cloud misconfigurations
      • Data leakage
      • DDoS attacks
      • Supply chain attacks
    • Compliance
      • NIS & NIS2
      • DORA
      • ISO 27001
      • PCI DSS
      • CRA
      • GDPR
    • Industries
      • Aviation
      • Digital infrastructure
      • Education
      • Energy
      • Financial services
      • Food
      • Government agencies
      • Healthcare
      • Manufacturing & production
      • Municipalities
      • Transportation
      • Real estate
      • Retail & e-commerce
      • Shipping
      • Water supply
  • Resources
    • Blog
    • Case studies
    • Fundamentals
      • Vulnerability management
      • Next-Gen Vulnerability Management
      • Phishing awareness
    • Webinar
    • Whitepapers
    • Holm Security platform video
  • Partner
    • Reseller
    • MSSP
    • Distributor
    • Partner sign-up
  • Company
    • About us
    • Contact
    • Join us
    • Management team
    • Media kit
    • Support
Holm Security Yellow
  • Platform
      Platform
    • Exposure management Level up your cyber defense with exposure management.
    • Vulnerability management A complete platform for a systematic, risk-based & proactive cyber defense.
    • Attack Surface Management (ASM) Automatically discover & monitor assets throughout your entire attack surface.
    • External Attack Surface Management (EASM) Automatically discover & monitor internet and web-facing assets.
    • Products
    • System & Network Security Assessment of system/server, computers, network equipment, OT, cloud infra, IoT, Active Directory, and devices.
    • Web Application Security Advanced scanning of modern web applications.
    • Cloud Security (CSPM) Multi-cloud platform support (Azure, AWS, Google, Oracle) and Microsoft 365.
    • API Security Scanning of all types of REST, GraphQL, and SOAP APIs.
    • Phishing Simulation & Awareness Training Phishing simulation, awareness programs, and questionnaires.
    • Features
    • Active Directory Security Continuously assess your on-prem Active Directory for misconfigurations.
    • OT Security Uncover vulnerabilities across industrial systems, minimize operational risk and protect critical infrastructure.
    • PCI ASV scanning Achieve PCI DSS compliance with Holm Security’s ASV‑certified scanning.
    • menu-logo-2
      HOLM SECURITY VMP

      The complete platform for a systematic, risk-based, and proactive cyber defense.

      Pricing Request a quote
  • Services
    • Certification Programs
    • Success Programs
  • MSSPs
  • Solutions
    • Attack vectors
      • Business critical systems
      • Web applications
      • Cloud-native platforms
      • Operational Technology (OT)
      • Internet of Things (IoT)
      • APIs
      • Employees
      • Remote workforce
      • Office networks & equipment
    • Threat vectors
      • Ransomware
      • Software vulnerabilities
      • Phishing & social engineering
      • Cloud misconfigurations
      • Data leakage
      • DDoS attacks
      • Supply chain attacks
    • Compliance
      • NIS & NIS2
      • DORA
      • ISO 27001
      • PCI DSS
      • CRA
      • GDPR
    • Industries
      • Aviation
      • Digital infrastructure
      • Education
      • Energy
      • Financial services
      • Food
      • Government agencies
      • Healthcare
      • Manufacturing & production
      • Municipalities
      • Transport
      • Real estate
      • Retail & e-commerce
      • Shipping
      • Water supply
  • Resources
    • Blog
    • Case studies
    • Fundamentals
      • Vulnerability management
      • Next-Gen Vulnerability Management
      • Phishing awareness
    • Webinars
    • Whitepapers
    • Media kit
      • Menu item
      • Menu item
      • Menu item
  • Partner
    • Reseller
    • MSSP
    • Distributor
    • Partner sign-up
  • Company
    • About us
    • Support
    • Contact
    • Join us
    • Open positions
    • Management team
    • Media kit
comment-lines-light-full - white comment-lines-light-blue
en
en Global
fr-be Belgium
da Denmark
fi Finland
de-de Germany
en-my Malaysia
nl Netherlands
no Norway
poland Poland
sv Sweden
en-gb UK
  • right-to-bracket-white right-to-bracket-blue
    • Security Center
    • Organizer
    • Partner Portal
Free trial

CVSS

Cybercriminals are backdooring online stores running Magento and Adobe Commerce September 9, 2026 — Cyberattacks & exploits Cybercriminals are backdooring online stores running Magento and Adobe Commerce Adobe released an emergency fix on 7 September for a vulnerability in Adobe Commerce and Magento Open Source that cybercriminals had already been exploiting for three days. CVE-2026-75650, nicknamed StyleSmuggler, scores a maximum 10.0 out of 10 (Critical)...
Cybercriminals chain two SonicWall vulnerabilities to break into remote-access appliances
September 4, 2026 — Cyberattacks & exploits Cybercriminals chain two SonicWall vulnerabilities to break into remote-access appliances

SonicWall disclosed two vulnerabilities in its SMA1000 remote-access appliances on 1...

Cybercriminals are hijacking Langflow servers for cloud keys
September 2, 2026 — Cyberattacks & exploits Cybercriminals are hijacking Langflow servers for cloud keys

A critical vulnerability in Langflow - a widely used open-source tool for building AI...

Active attacks target critical Fortinet vulnerability – act now
April 7, 2026 — Cyberattacks & exploits Active attacks target critical Fortinet vulnerability – act now

Fortinet has disclosed critical vulnerability CVE-2026-35616 (CVSS score 9.8) in...

Filter posts

All Phishing awareness Vulnerability management
    • Network Security
    • Web Application Security
    • CVSS
    • Company news
    • Agent-based scanning
    • Laws & regulations
    • Penetration testing
Common Vulnerability Scoring System (CVSS) & why it is necessary June 7, 2022 — Vulnerability management Common Vulnerability Scoring System (CVSS) & why it is necessary

CVSS is a standardized method used to determine the severity of vulnerabilities in the software across your technical assets. The vulnerabilities are assigned...

yellow icon envelope open text light
Stay in the know
Sign up for our newsletters
Security moves fast. We help you keep up.
Sign up
Product
System & Network Security Web Application Security Cloud Security API Security Phishing Simulation & Awareness Training
Platform
Exposure management Vulnerability management Attack Surface Management (ASM) External Attack Surface Management (EASM)
Take the next step
Pricing Free trial Quote Demo/meeting
Industries
Aviation Digital infrastructure Education Energy Financial services Food Government agencies Healthcare Manufacturing & production Municipality Transport Real estate Retail & e-commerce Shipping & maritime Water supply
Professional services
Certification Programs Success Programs
Compliance
NIS & NIS2 Directive DORA ISO 27001 PCI DSS GDPR
Resources
Blog Resources
Partner
Become a partner Partner sign-up
Company
About us Contact Join us Management team Media kit
Login
Security Center Organizer Partner Portal
Holm Security Yellow
© 2026 All rights reserved | Privacy Policy | Cookie policy
Follow us on LinkedIn Contact us