← כל הכתבות דוח נתונים

The Invisible Threat: Why 92% of Small Business Computers in Israel Are Ticking Time Bombs

A new audit of endpoint health reveals a dangerous combination of unpatched critical vulnerabilities and neglected hardware maintenance in the SMB sector.

מאת אושרי פנחס · 07/10/2026

In the global cybersecurity landscape, Israel is often viewed as a fortress of innovation. However, a new data-journalism report based on the XIT monitoring system reveals a starkly different reality for the country’s small and medium-sized businesses (SMBs). A sample of 12 endpoints from Israeli small businesses shows that 11 out of 12—approximately 92%—are currently operating with at least one active critical alert.

While large enterprises invest millions in security operations centers (SOCs), these findings suggest that the backbone of the local economy is struggling with basic digital hygiene. The implications of this neglect extend far beyond the Mediterranean; as supply chain attacks become the preferred method for global threat actors, a single unpatched PC in a small Israeli firm can serve as a backdoor into international networks.

Operational Decay and Performance Bottlenecks

The study found that the average CPU load across the sample stood at 21.0%. While a healthy system at idle should typically remain below 10%, this elevated average points to significant background activity. Such strain is often the result of legacy hardware, poorly optimized software, or, more nefariously, malware or cryptojackers consuming resources in the background. For a small business, this translates directly to lost productivity and shortened hardware lifespans.

The operational failures do not stop at processor load. Driver errors (drivers_error) were detected in 42% of the computers (5 out of 12), while 33% suffered from high memory usage, with one machine hitting a staggering 85% utilization. Furthermore, the data shows a dangerous trend of uptime: the average time between reboots was 238 hours. One machine had not been restarted for over 720 hours—a full month—preventing the installation of essential system updates and accumulating stability errors.

The Security Gap: Exploited Vulnerabilities in the Wild

The most alarming aspect of the report is the security posture of these endpoints. The monitoring system identified 230 open vulnerability findings across the 12 computers, involving 28 unique CVE identifiers. Crucially, 17 of these CVEs are listed on the U.S. Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog, meaning they are actively being used by hackers today.

Among the critical threats identified were CVE-2025-0411 in 7-Zip 24.07 (x64) with a CVSS score of 7.0 and a 67.1% exploitation probability, and CVE-2025-15556 in Notepad++ (32-bit x86) with a CVSS score of 7.5. Perhaps most telling of the lack of maintenance is the presence of CVE-2020-0878 (Microsoft Edge), a vulnerability that has been on CISA’s radar since November 2021 yet remains unpatched on these systems.

A Regulatory and Economic Risk

Beyond technical failures, the report highlights a looming crisis for the 25% of computers found with active antivirus threats (av_threat) and the 8% operating with firewalls disabled. Furthermore, 25% of the sample (3 out of 12) are running end-of-life operating systems—Windows 10 or older—which will no longer receive security patches, leaving them permanently exposed to new exploits.

For small businesses in Israel and abroad, these figures represent more than just technical debt; they represent a risk of total system failure, data loss, and regulatory fines. Without dedicated IT teams, these businesses are often unaware that they are operating on the edge of a catastrophe. The recommendation from experts is clear: proactive monitoring and automated patching are no longer optional luxuries but essential requirements for survival in an increasingly complex digital world.