Penetration on an assessment for a client organization, a penetration tester notices numerous outdated software package versions were installed ...s-critical servers. Which of the following would best mitigate this issue?
Yeah, I'm with Oren on this one. Option A gives you a more comprehensive fix. Although, I do have to say, the idea of refraining from patching until QA approves in Option D is just plain ridiculous. That would be the worst thing to do!
That's a fair point, Javier. But I'm worried that Option B is a bit too specific. Patching and change control are more overarching solutions that can address the root cause, rather than just fixing the symptoms.
I see your point, but wouldn't revising client scripts be a temporary fix? Patching and change control programs seem like a more comprehensive solution.
Ashley
8 months agoCurt
8 months agoOren
8 months agoOra
8 months agoLuz
8 months agoHoward
8 months agoNicolette
8 months agoCaprice
8 months ago