2.3 Operating System Patching Flashcards

(15 cards)

1
Q

Why are security professionals constantly emphasizing the need to keep operating systems patched to the latest versions?

A

Operating systems are foundational computing platforms, making them a primary target for attackers. Patching closes known vulnerabilities that attackers could exploit.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What makes operating systems an attractive target for attackers looking for vulnerabilities?

A

They are foundational platforms used by everyone, meaning a single vulnerability can potentially affect a vast number of systems.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How does the complexity of an operating system, specifically regarding its lines of code, relate to the presence of security vulnerabilities?

A

The more lines of code an operating system has, the more opportunities there are for security vulnerabilities to appear.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Describe the general process by which an unknown vulnerability in an operating system is addressed and patched.

A

Researchers or attackers find vulnerabilities, which are reported to the software manufacturer, who then creates a patch and an update for users to install.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is ‘Patch Tuesday,’ and when does it typically occur for Microsoft Windows?

A

‘Patch Tuesday’ is the second Tuesday of each month when Microsoft releases entire sets of security patches for its Windows operating systems and other applications.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Give an example from the text of the types of security vulnerabilities that Microsoft regularly addresses in its updates.

A
  • Elevation of Privilege Vulnerabilities
  • Security Feature Bypass Vulnerabilities
  • Remote Code Execution Vulnerabilities
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Why is it recommended to patch software as quickly as possible once an update is released?

A

Once a vulnerability is announced, attackers will immediately begin reverse engineering it to create attack code. Patching quickly protects the system.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What specific best practice is suggested for home users before performing an operating system patch?

A

Make sure they have a backup before performing a patch.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

In large and complex IT environments, what additional step is recommended before deploying a patch to a production environment?

A

Testing a patch before deploying it to ensure it does not inadvertently break something else.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Why is maintaining a good backup crucial even after taking all precautions and testing for operating system patches?

A

Problems can still occur after a patch is installed, and a backup allows the system to revert to a known good configuration.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Fill in the blank: The process of applying updates to software or an operating system to fix bugs is called _______.

A

[Patching]

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

True or False: ‘Patch Tuesday’ is a term used for the first Monday of each month when Microsoft releases updates.

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is a vulnerability in the context of operating systems?

A

A weakness or flaw in an operating system or software that can be exploited by an attacker.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is a backup?

A

A copy of data or system configurations made to prevent data loss or allow restoration.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What does the Microsoft Security Response Center (MSRC) do?

A

Manages security vulnerabilities in Microsoft products and services, and releases security advisories and updates.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly