not applying patches - study


hi all,

i need prepare paper costs associated not applying security pacthes in enterprise.

therefore, need know cani find figures how non-patching costs companies arround globe. found info 2004 , 2009, nothing 2012 or 2011.

does knows source gathering such information, free(of course)?

thanks,

therefore, need know cani find figures how non-patching costs companies arround globe. found info 2004 , 2009, nothing 2012 or 2011.

maybe best way approach costs of attacks, intrusions, , data breaches. every 1 of events can directly traced unpatched system.

i feel pain having justify question. question of risk of not applying security patches in enterprise ought no-brainer executive can spell c-o-m-p-u-t-e-r, , not require sort of cost-benefit analysis. 1 have had living in desert past 6 months not have heard of several incidents directly attributable java exploits, , few others attributable adobe reader or adobe flash.

here's couple of current resources started:

http://www.appsecinc.com/santa-breach/risks-to-database-security-in-2012.pdf

http://www.cisco.com/web/about/security/intelligence/2013/crr_feb25-mar3_2013.html


lawrence garvin, m.s., mcitp:ea, mcdba, mcsa
solarwinds head geek
microsoft mvp - software distribution (2005-2013)
mvp profile: http://mvp.support.microsoft.com/profile/lawrence.garvin
the views expressed on post mine , not reflect views of solarwinds.



Windows Server  >  WSUS



Comments

Popular posts from this blog

2008 Windows Deployment Server Properties Error

Can no longer user MS Update - Files required to use Microsoft Update are no longer registered

How do a find data in one file, search for it in another file and if not found, write a custom message to another file