Penetration on an assessment for a client organization, a penetration tester notices numerous outdated software package versions were installed ...s-critical servers. Which of the following would best mitigate this issue?
Yeah, I'm with Oren on this one. Option A gives you a more comprehensive fix. Although, I do have to say, the idea of refraining from patching until QA approves in Option D is just plain ridiculous. That would be the worst thing to do!
That's a fair point, Javier. But I'm worried that Option B is a bit too specific. Patching and change control are more overarching solutions that can address the root cause, rather than just fixing the symptoms.
I see your point, but wouldn't revising client scripts be a temporary fix? Patching and change control programs seem like a more comprehensive solution.
Ashley
1 years agoCurt
1 years agoOren
1 years agoOra
12 months agoLuz
12 months agoHoward
12 months agoNicolette
12 months agoCaprice
12 months ago