02.05.2019 Views

Cyber Defense eMagazine May 2019

Cyber Defense eMagazine May Edition for 2019 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cybersecurity expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group

Cyber Defense eMagazine May Edition for 2019 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cybersecurity expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Ivanti Priorities this month:<br />

<br />

<br />

<br />

<br />

<br />

<br />

Patch the Windows OS and browsers<br />

Patch Adobe Reader, Acrobat, AIR and Flash<br />

Remove Shockwave from your environment unless you have a continued support contract with<br />

Adobe to receive updates<br />

Patch Wireshark<br />

Investigate the Office, SharePoint, and Exchange updates and get them rolled out in a reasonable<br />

timeframe<br />

Review end-of-life software in your environment and have an action plan in place to eliminate or<br />

mitigate risks. I would suggest:<br />

o Remove it (best option)<br />

o Virtualize the workloads<br />

o Reduce access<br />

o Segregate from the rest of your environment<br />

o Limit or remove internet connectivity to those workloads<br />

So if you caught my April Patch Tuesday Forecast on Help Net Security you have seen the nice long list<br />

of end-of-life products I went through. Add Shockwave to that list now. Also, if you have not caught up<br />

on the latest news we have a real-world example of how neglecting this issue can come back to bite you.<br />

Arizona Beverages was hit by a large-scale Ransomware attack that brought the company to its knees.<br />

The incident was attributed to outdated systems and systems with updates not yet applied as well as<br />

poorly configured backups. Take the time to review this list and look into other products in your<br />

environment. Obsolete software is a considerable risk to your environment and needs to be addressed<br />

even if removal is not the immediate answer. Have a plan in place to mitigate the risk if elimination is not<br />

possible.<br />

Recent and upcoming end-of-life announcements:<br />

Windows 10 branch 1709 (for Pro licenses) – April 9, <strong>2019</strong><br />

Windows 10 branch 1607 - April 9, <strong>2019</strong><br />

XP Embedded POSReady 2009 - April 9, <strong>2019</strong><br />

Java 8 (last update was January <strong>2019</strong>) – January <strong>2019</strong><br />

Adobe Shockwave - April 9, <strong>2019</strong><br />

Windows 7 - January 14, 2020<br />

Server 2008 - January 14, 2020<br />

Server 2008 R2 - January 14, 2020<br />

51

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!