{"id":132820,"date":"2025-09-04T18:01:08","date_gmt":"2025-09-04T18:01:08","guid":{"rendered":"https:\/\/www.newsbeep.com\/us\/132820\/"},"modified":"2025-09-04T18:01:08","modified_gmt":"2025-09-04T18:01:08","slug":"ai-can-help-track-an-ever-growing-body-of-vulnerabilities-cisa-official-says","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/us\/132820\/","title":{"rendered":"AI can help track an ever-growing body of vulnerabilities, CISA official says"},"content":{"rendered":"<p>Artificial intelligence could be a key tool for helping organizations keep track of an ever-expanding catalog of identified software flaws, a top official at the Cybersecurity and Infrastructure Security Agency said Thursday.<\/p>\n<p>CISA sponsors the Common Vulnerabilities and Exposures (CVE) program, which publishes standardized data about known cyber vulnerabilities. The number of vulnerabilities the CVE program published last year rose to 40,000, said Chris Butera, acting deputy executive assistant director of cybersecurity at CISA.<\/p>\n<p>\u201cFor any organization to try to track and hash against 40,000 different vulnerabilities within their IT ecosystem, it\u2019s a very complex challenge,\u201d he said at Thursday\u2019s GDIT Emerge event, produced by Scoop News Group. \u201cWe can do a lot more with automation, and that\u2019s where maybe AI can help us in the automation pieces.\u201d<\/p>\n<p>CISA\u2019s goals for the CVE program are \u201cmore automation, innovation and increasing the quality of the data going into the program,\u201d he said. Earlier this year CISA <a href=\"https:\/\/cyberscoop.com\/cisa-reverses-course-extends-mitre-cve-contract\/\" rel=\"nofollow noopener\" target=\"_blank\">narrowly averted a lapse<\/a> in a key contract to administer it.<\/p>\n<p>Butera\u2019s remarks were among several at the event where industry and policymakers opined on how AI can aid cyber defenders, as opposed to fears about how AI might aid hackers looking to exploit the technology.<\/p>\n<p>Daniel Richard, associate deputy director of digital innovation at the Central Intelligence Agency, said that he\u2019s \u201cactually quite bullish and optimistic in how AI can be leveraged in the cyber space.\u201d<\/p>\n<p>It\u2019s especially important as the window shrinks between the discovery of previously unknown vulnerabilities called zero-days and when hackers begin exploiting them.<\/p>\n<p>\u201cThere is a lot of opportunity as we gather more telemetry data, more metrics, to be able to leverage AI to identify anomalies much more quickly to be able to react to those threats in a much more proactive way,\u201d he said.<\/p>\n<p>Manny Medrano, director of the office of cybersecurity monitoring and operations at the State Department, said a good role might be treating AI as a \u201cvirtual assistant.\u201d But humans have to remain in charge in the end. \u201cYou make the final decision,\u201d he said.<\/p>\n<p>It also can play an important role for defenders in sifting through mountains of data, said David Carroll, vice president of cyber capability, engineering and strategy at GDIT.<\/p>\n<p>\t\t\t\t\t<img decoding=\"async\" class=\"author-card__image\" src=\"https:\/\/www.newsbeep.com\/us\/wp-content\/uploads\/2025\/09\/Tim-Starks-01.jpg\" alt=\"Tim Starks\"\/><\/p>\n<p>\t\t\tWritten by Tim Starks<br \/>\n\t\t\tTim Starks is senior reporter at CyberScoop. His previous stops include working at The Washington Post, POLITICO and Congressional Quarterly. An Evansville, Ind. native, he&#8217;s covered cybersecurity since 2003. Email Tim here: <a href=\"https:\/\/cyberscoop.com\/ai-can-help-track-an-ever-growing-body-of-vulnerabilities-cisa-official-says\/mailto:tim.starks@cyberscoop.com\" rel=\"nofollow noopener\" target=\"_blank\">tim.starks@cyberscoop.com<\/a>.\t\t<\/p>\n","protected":false},"excerpt":{"rendered":"Artificial intelligence could be a key tool for helping organizations keep track of an ever-expanding catalog of identified&hellip;\n","protected":false},"author":2,"featured_media":132821,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[45],"tags":[182,181,4514,507,83784,83785,83786,83787,83788,4121,74,11202,83789],"class_list":["post-132820","post","type-post","status-publish","format-standard","has-post-thumbnail","category-artificial-intelligence","tag-ai","tag-artificial-intelligence","tag-artificial-intelligence-ai","tag-artificialintelligence","tag-central-intelligence-agency","tag-chris-butera","tag-cve","tag-cybersecurity-and-infrastructure-security-agency-cisa","tag-gdit","tag-state-department","tag-technology","tag-vulnerabilities","tag-zero-days"],"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts\/132820","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/comments?post=132820"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts\/132820\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/media\/132821"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/media?parent=132820"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/categories?post=132820"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/tags?post=132820"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}