Skip to main content
JP Morgan Asset Management - Home
  • Products
    Overview

    Funds

    • Performance & Yields
    • Liquidity
    • Ultra-Short
    • Short Duration

    Solutions

    • Empower Share Class
    • Academy Securities
    • Cash Segmentation
    • Separately Managed Accounts
    • Managed Reserves Strategy
    • Capitalizing on Prime Money Market Funds
  • Insights
    Overview

    Liquidity Insights

    • Liquidity Insights Overview
    • Global Liquidity Investment Outlook
    • Tokenization
    • Case Studies
    • Partnership with fintechs
    • Leveraging the Power of Cash Segmentation
    • Cash Investment Policy Statement

    Market Insights

    • Market Insights Overview
    • Eye on the Market
    • Guide to the Markets
    • Market Updates

    Portfolio Insights

    • Portfolio Insights Overview
    • Currency
    • Fixed Income
    • Long-Term Capital Market Assumptions
    • Sustainable investing
    • Strategic Investment Advisory Group
  • Resources
    Overview
    • MORGAN MONEY
    • Account Management & Trading
    • Global Liquidity Investment Academy
    • Announcements
    • Webcasts
  • About us
    Overview
    • Diversity, Opportunity & Inclusion
    • Spectrum: Our Investment Platform
    • Sustainable and social investing
    • Our Leadership Team
  • Contact us
  • English
  • Role
  • Country
MORGAN MONEY LOGIN
Search
Menu
Search
You are about to leave the site Close
J.P. Morgan Asset Management’s website and/or mobile terms, privacy and security policies don't apply to the site or app you're about to visit. Please review its terms, privacy and security policies to see how they apply to you. J.P. Morgan Asset Management isn’t responsible for (and doesn't provide) any products, services or content at this third-party site or app, except for products and services that explicitly carry the J.P. Morgan Asset Management name.
CONTINUE Go Back
Patchmageddon

The race to patch software vulnerabilities before zero-day cyber-exploitations proliferate

Highly capable frontier AI models can now detect previously unknown vulnerabilities in software and operational hardware at massive scale. As a result, state-grade cyber capabilities will become increasingly accessible to actors with malicious intent such as ransomware operators motivated by profit, terrorists or hacktivists with no goal but destruction. Unfortunately, it’s taking longer to patch vulnerabilities just as attacker time to exploit is falling; the average time between disclosure of a vulnerability and its first exploitation has now fallen to zero days. In May 2026, Anthropic reported that of 530 high and critical vulnerabilities reported to maintainers, only 75 had been patched. Even when patches exist, companies often don’t respond in time: in ~60% of breaches, a patch was already available at the time of compromise.

I partnered with JP Morgan’s Cybersecurity Teams to get into the details on this critical national security issue. In “Patchmageddon” we review how cyber risks have changed, the underappreciated breadth and risks from open source code, the risks to physical infrastructure and some guidance what business owners, software developers and the Federal government should be doing to mitigate the potential consequences.

Watch the Podcast

Click here for important information.

About Eye on the Market

Since 2005, Michael has been the author of Eye On The Market, covering a wide range of topics across the Markets, investments, economics, politics, energy, municipal finance and more.

  • Economy
  • Investment Strategies
  • Markets
  • Energy

More Eye on the Market

J.P. Morgan Asset Management

  • Investment stewardship
  • About us
  • Contact us
  • Privacy policy
  • Cookie policy
  • Sitemap
  • Accessibility
J.P. Morgan

  • J.P. Morgan
  • JPMorgan Chase
  • Chase

READ IMPORTANT LEGAL INFORMATION. Legal Disclaimer >

The value of investments may go down as well as up and investors may not get back the full amount invested.

Copyright 2026 JPMorgan Chase & Co. All rights reserved.