Find notable cyber news and cases, enriched with sources, timelines, and signals.

DSIT VMS public-sector vulnerability scanning service cuts backlog and fix times

Security Tool/Service
First reported
Last updated
Happening score
H score 10
1 unique sources, 1 articles

Summary

Hide ▲

The UK government’s VMS now continuously scans 6,000 public sector bodies and has sharply reduced unresolved vulnerability exposure, speeding remediation across internet-facing assets. The service matters because it turns vulnerability discovery into a tracked workflow, reducing the window for DNS-related abuse, fraud, data theft, and service disruption. Government reporting says the program has cut the critical-vulnerability backlog and shortened fix times from nearly two months to about a week.

Related Happenings

UK government Cyber Action Plan launches Cyber Unit and software security scheme

Public Sector Action
First: 06.01.2026 14:55 Last: 06.01.2026 14:55 Sources 1

About this happening: The **UK government** announced a **Government Cyber Unit** and a **Software Security Ambassador Scheme** to strengthen **public-sector cyber resilience** and **secure software de...

Timeline

  1. 27.02.2026 13:45 1 articles · 2mo ago

    DSIT introduces public-sector VMS scanning service

    Mitigation Patch Update

    The UK government’s Department for Science, Innovation and Technology (DSIT) introduced the Vulnerability monitoring service (VMS) as part of the blueprint for modern digital government policy paper, using commercial and proprietary scanning tools to monitor public sector internet-facing assets and surface weaknesses that can be fixed before they enable DNS redirection, data theft, or outages.

    Show sources
  2. 26.02.2026 02:00 2 articles · 3mo ago

    UK update quantifies VMS remediation gains

    Victim Impact Update

    A UK government update said the VMS had cut the backlog of critical vulnerabilities by 75% and reduced cyber-attack fix times by 87%, with serious security weaknesses in public sector websites now fixed in about eight days instead of nearly two months and DNS-related issues tracked through remediation.

    Show sources