Categories: News

Sophos Named Common Vulnerability and Exposure Numbering Authority

OXFORD, United Kingdom, Jan. 13, 2021 (GLOBE NEWSWIRE) — Sophos, a global leader in next-generation cybersecurity, today announced that it has been named a Common Vulnerabilities and Exposures (CVE) Numbering Authority (CNA) in the CVE program, a recognized international standard for identifying and naming cybersecurity vulnerabilities. With this status, Sophos is authorized to assign CVE identification to unique vulnerabilities within the scope of its products. Security researchers can now work directly with Sophos to open CVEs for the company’s products, making the process of reporting issues and assigning CVEs more straightforward.

The CVE program is an international, community-based effort that maintains a community-driven, open data registry of vulnerabilities. The program catalogs CVEs in a publicly available registry that is available to security researchers, vulnerability disclosers and information technology vendors. Using a common identifier makes it easier to share and cross-check data across the industry’s several and separate security databases and tools that track vulnerabilities.

“Sophos’ new status as a CNA is another example of our commitment to be transparent, and by having the ability to assign CVEs, we can provide the industry with pertinent information about our products faster. This allows organizations to more quickly assess security issues, determine the scale of urgency and prioritize updates,” said Ross McKerchar, vice president and chief information security officer at Sophos. “Sophos’ CVEs will also get entered into the multiple CVE-compatible databases within the industry. By working collectively on these databases with other vendors and industry standards watchguards, we can together improve defenses against persistent attackers.”

“The Common Vulnerabilities and Exposures Team welcomes Sophos as our newest CVE Numbering Authority. Sophos has a strong reputation of contributing to the global digital security community, producing antivirus, encryption and cybersecurity capabilities for over 30 years. Their experience brings real value to the CVE Program. We are very pleased to have Sophos as a contributing member of the CVE Team,” said Kent Landfield, CVE board member.

About the CVE Program
Common Vulnerabilities and Exposures (CVE®) is an international, community-based effort that maintains a community-driven, open data registry of vulnerabilities. The CVE IDs assigned through the registry enable program stakeholders to rapidly discover and correlate vulnerability information used to protect systems against attacks. The CVE Program currently has 149 CNA’s in 25 countries, globally across technologies and services.

About Sophos
As a worldwide leader in next-generation cybersecurity, Sophos protects more than 400,000 organizations of all sizes in more than 150 countries from today’s most advanced cyber threats. Powered by SophosLabs and SophosAI – a global threat intelligence and data science team – Sophos’ cloud-native and AI-powered solutions secure endpoints (laptops, servers and mobile devices) and networks against evolving cyberattack techniques, including ransomware, malware, exploits, data exfiltration, active-adversary breaches, phishing, and more. Sophos Central, a cloud-native management platform, integrates Sophos’ entire portfolio of next-generation products, including the Intercept X endpoint solution and the XG next-generation firewall, into a single “synchronized security” system accessible through a set of APIs. Sophos has been driving a transition to next-generation cybersecurity, leveraging advanced capabilities in cloud, machine learning, APIs, automation, managed threat response, and more, to deliver enterprise-grade protection to any size organization. Sophos sells its products and services exclusively through a global channel of more than 53,000 partners and managed service providers (MSPs). Sophos also makes its innovative commercial technologies available to consumers via Sophos Home. The company is headquartered in Oxford, U.K. More information is available at www.sophos.com.

CONTACT: Hanah Johnson, sophos@marchcomms.com

Staff

Recent Posts

Health Care AI Initiative Launched by Paragon Health Institute

New initiative will promote AI policies and solutions to transform American health careWASHINGTON, Jan. 12,…

11 minutes ago

Amphastar Pharmaceuticals Announces Exclusive License Agreement with Nanjing Hanxin Pharmaceutical Technology Co., Ltd. for Fully Synthetic Corticotropin Compound

Agreement expands Amphastar's proprietary peptide pipeline into broader inflammatory and autoimmune conditions RANCHO CUCAMONGA, CA…

11 minutes ago

CelLBxHealth PLC Announces Board Changes

GUILDFORD, SURREY / ACCESS Newswire / January 12, 2026 / CelLBxHealth plc (AIM:CLBX), a leader…

3 hours ago

Cosmo Enters Scale Up Phase with 104M Revenue, 128M Cash, and Breakout AI and Dermatology Platforms

Ad hoc announcement pursuant to Art. 53 LR 2025 marks a key execution year in…

4 hours ago

Pre-JPM Investor Pulse Signals 2026 Capital Rotation Toward “AI That Ships,” Admin Cost Takeout, and Differentiated Metabolic Assets With Special-Situations Capital Back in Scope

Preliminary, directional read of planned 88-investor sample indicates heightened proof thresholds (unit economics, reimbursement, outcomes)…

18 hours ago