Penetration on an assessment for a client organization, a penetration tester notices numerous outdated software package versions were installed ...s-critical servers. Which of the following would best mitigate this issue?
Yeah, I'm with Oren on this one. Option A gives you a more comprehensive fix. Although, I do have to say, the idea of refraining from patching until QA approves in Option D is just plain ridiculous. That would be the worst thing to do!
That's a fair point, Javier. But I'm worried that Option B is a bit too specific. Patching and change control are more overarching solutions that can address the root cause, rather than just fixing the symptoms.
I see your point, but wouldn't revising client scripts be a temporary fix? Patching and change control programs seem like a more comprehensive solution.
Ashley
7 months agoCurt
7 months agoOren
7 months agoOra
6 months agoLuz
6 months agoHoward
6 months agoNicolette
6 months agoCaprice
6 months ago