- It's the applications, stupid
- Will a whitelist save personal computing?
- Thousands of Web sites under attack
- To solve the unsolvable problem
- Re-thinking the security of virtual machines
- Security Development Lifecycle trumps code complexity
- Is your Web site FIPS compliant?
- Computer security: Why have least privilege?
- Strategic security: Get a handle on authentication
- Control user installs of software
November 05, 2006 | Comments: (0)
To patch or not to patch? DHS chose wrong
Many, if not most, companies have to struggle with how quickly to install a critical patch. Patch too quick and you risk breaking applications. Patch too slow, and the malware gets you.
In this article, the Dept. of Homeland Security and the Border and Customs Patrol learned two weeks was too late.
Interesting read.
[Thanks to my friend Steve for the story and link]
Posted by Roger Grimes on November 5, 2006 04:54 PM
RATE THIS ARTICLE:
-

- COMMENTS
TOP STORIES
Hyperconnected users growingSteve Jobs to keynote WWDC
CSC settles kickbacks case
MS previews SMB software
What does HP-EDS really mean?
Mac Office 2008 SP1 released
HP buys EDS for $13.9 billion
Corporate IT spending slows
MS targets smartphone market
Sun to clarify JavaFX plan
ADDITIONAL RESOURCES

- Application Security: Threats and How to Counter Them
- Why Linux Threats Mean Business
- Minding the Machines: PC Disaster Recovery for the Enterprise

- Protect Your Data with SSL
- Prevent Your Next Microsoft Exchange Outage
- 11 Myths About Microsoft Exchange Backup & Recovery





