首页> 外文期刊>SC magazine >Patching policies must be part of everyday practice
【24h】

Patching policies must be part of everyday practice

机译:修补策略必须是日常实践的一部分

获取原文
获取原文并翻译 | 示例
           

摘要

Security administrators don't have it easy. As well as having to perform system updates, back up servers, monitor intrusion detection systems and complete other tasks, they now need to find time for another critical task: applying software patches. According to last month's Internet Security Threat Report from Symantec-an analysis of network-based attacks, known vulnerabilities and malicious code for the six months between July and December 2003 - 2,636 new vulnerabilities were documented in 2003, an average of seven per day. As of today, potential attackers are aware of 9,000 vulnerabilities affecting more than 20,000 technologies from around 200 vendors. Seventy percent of the vulnerabilities found last year were easily exploited due to the fact that no exploit was required or an exploit was readily available. This is usually a preventable situation, but because many servers were left unpatched, the viruses entered through open doors into systems all over the world. Perhaps more worrisome is the fact that the period of time between the announcement of a vulnerability and the release of an associated exploit is shrinking.
机译:安全管理员并不容易。除了必须执行系统更新,备份服务器,监视入侵检测系统并完成其他任务外,他们现在还需要为完成另一个关键任务找时间:应用软件补丁。根据赛门铁克上月发布的《 Internet安全威胁报告》,该报告对基于网络的攻击,2003年7月至2003年12月的六个月中的已知漏洞和恶意代码进行了分析-2003年记录了2636个新漏洞,平均每天七个。截止到今天,潜在的攻击者已经意识到9,000个漏洞,这些漏洞影响了大约200个供应商的20,000多种技术。去年发现的漏洞中有70%很容易被利用,这是因为不需要漏洞利用或很容易获得漏洞利用。这通常是可以预防的情况,但是由于许多服务器未安装补丁程序,因此病毒通过敞开的门进入了全世界的系统。也许更令人担忧的是,从宣布漏洞到发布相关漏洞的时间在缩短。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号