2.3 Operating system vulnerabilities Flashcards

(3 cards)

1
Q

Operating systems

A

A foundational computing platform. Everyone has an operating system. Makes OS a very big target.

Remarkably complex. Millions of lines of code. More code means more opportunities for a security issue.

The vulnerabilities are already in there. Weve just not found them yet.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

A month of OS updates

A

A normal month of Windows updates. Patch Tuesday-2nd Tuesday of each month. Other companies have similar schedules.

May 9th 2023- Nearly 50 security patches. 8 elevation of privilege vulnerabilities, 4 security feature bypass vulnerability, 12 remote code execution vulnerabilities, 8 information disclosure vulnerabilities, 5 denial of service vulnerabilities, 1 spoofing vulnerability.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Best practice for OS vulnerabilities.

A

Always update. Monthly or on demand updates. Its a race between you and the attackers.

May require testing before deployment. A patch might break something else.

May require a reboot. Save all data.

Have a fallback plan. Where’s the backup?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly