Free Newsletters
Technology & Business Daily

InfoWorld
Log-in | Register
SECURITY ADVISER  

Vulnerability vigilence

If you haven’t learned to keep your software patched by now, you probably deserve Sasser; but maybe you don’t know how

By Wayne Rash
May 07, 2004
 

It's a typical series of events for a major worm outbreak. First, the early reports from Symantec, followed by more detailed reports, changes in the security level, and the like. Close behind is a flood of e-mail from security companies bragging about beating the worm du jour. Finally, a flurry of e-mails from experts reminding you that they were right and knew this was going to happen all along.

Free IT resource

TechNet: More ways to know it, share it, and keep it running.

Sponsored by Microsoft

Free IT resource

Attend the SOA Executive Forum: Breaking SOA Bottlenecks SOAExecForum.com/may2007

Sponsored by InfoWorld

When I thought about the millions of people being infected by Sasser, a worm that is easily stopped by an updated version of Windows, the most I could wonder is what the administrators of these machines were thinking. After all, the patch had been out for weeks. It’s no secret that once a vulnerability is found, someone creates software to exploit it. So why haven’t these machines been patched?

I was originally thinking about ranting on about this topic in this week's column. After all, how could an IT professional continue to accept a paycheck if problems like this continued to appear? But a calming chat with my editor made me realize that while there are managers who never seem to get the word, there are also some who simply don’t have the means to solve the problem, and some who are overwhelmed by the task’s complexity.

There’s not much to be done for a company that refuses to spend the money or allocate the resources to keep its networks safe. Perhaps at some point the directors of these companies will find out their equity has been wasted by poor management, and if they still have a company, they can make replacements. Likewise, those companies that simply do not put enough people on the job to do the work will get the pain they deserve, although sadly the managers who are really responsible will probably escape repercussions.

But then there are those who are simply overwhelmed. After all, a big company’s network is astonishingly complex; it’s extremely difficult to keep up with the pace of new patches and updates needed for every device on the network by yourself.

One of the best sources of help is a good vulnerability assessment tool. Fortunately, there are plenty available. Last week, for example, I visited the offices of eEye Digital Securityand got a look at its new software, due out soon. I’ve also talked to people involved with e-Security’ssuite of products for managing vulnerability assessment. (I’ll be reviewing both of these products in the near future).

One of the great things about these packages is that they can query every device on your network, determine the current patch level for each, and report what needs to be done to update each device. Even better, eEye’s products can also help fix the problem, and e-Security’s can tell you when an exploit is under way.

Both of these products are designed to make an IT manager’s life easier. If you’re not able to keep up with your patches by yourself, you should be looking at one of these products very thoughtfully.





 


 
Wayne Rash is an InfoWorld senior contributing editor.
 

TOP NEWS:


»  Troubleshooting tool for Java offered
Sun's Java VisualVM open-source technology views apps while they run on a JVM and is billed as all-in-one solution

»  Python backing eyed for NetBeans
Scripting language capabilities of the open-source IDE continue to expand

»  Microsoft sets Windows XP SP3 automatic download for Thursday
The latest service pack for Windows XP will be pushed to Automatic Update at 7a.m. EDT on July 10

»  Real Software, Veryant bolster dev tools
RealBasic, Cobol apps platforms get improvements

»  Microsoft sets hosted-services pricing, irks partners
By offering 38 percent discount to customers who buy entire hosted business productivity suite, Microsoft undercuts partners selling similar services

»  Adobe readying new mashup tool for business users
Mashup interface code-named 'Genesis' will open up desktop 'workspace' combining business application data, documents, analytics, and instant messaging




Solutions to the Toughest IT Challenges in Remote Offices
Though small in size, remote offices face many of the same IT challenges as larger central offices. This Webcast zeroes in on the top line challenges to deliver information that can provide immediate benefits to your business. Sponsor: AMD and Dell

»  Click here to view this Webcast
  Zombie PCs Are Attacking Your LAN
A recent study showed that malware-infected zombie PCs are now a bigger threat to ISPs and Web infrastructure than DoS attacks. As this brand new IT Strategy Guide explains, an increased use of peer-to-peer techniques by the attackers has made it harder to fight back. Download now, compliments of Verio:

»  Click here to download now

- Special Advertising Partners -
WHITE PAPERS
 

» Technology White Papers Library

Technology White Papers by Topic

Technology White Papers E-mail Alert

Find out when the latest white paper is available:
 
 
INFOWORLD MARKETPLACE
 
» BUY A LINK NOW
 
SEE ALSO
• Special Report: The Sasser worm
• SecureIIS delivers a proactive tack to squelch attacks


FIND PRODUCTS AND COMPANIES
» COMPLETE PRODUCT GUIDE



TECHNOLOGY INDEX
• Applications
• Application Development
• Security
• Networking
• Wireless
• Platforms
• Hardware
• Data Management
• Storage
• Web Services
• Business
• Telecom
• Professional Services
• Standards

TECH WATCH 


What's the 411 on GOOG-411?
Just as Google has become synonymous with "performing a Web search," 411 is understood to mean "information" -- as in "what's the 411?" I was thus surprised to discover, from a billboard, no less, that the king of search is taking on the ...

Apple HTML source reveals 'iPhone Extreme'
"This one's a stretch..." reports AppleInsider. Um, yeah. Reporting on HTML code sightings of product names could be called a stretch, but iPhone Extreme has a ring to it. Now, that sounds like the product Apple should have released first, rather ...

COLUMNISTS

Unified under law
Ephraim Schwartz's Column and Blog (InfoWorld) - In the litigious world we live in, deploying a unified communications platform in your enterprise could...
» MORE COLUMNISTS

MORE INFOWORLD BLOGS


Open Sources 
Product Management
When I joined MySQL four years ago, there was quite a lot of debate about product management. We didn't actually have ...

Zero Day 
Botnet herders tending smaller flocks
New research backs up the theory that botnet operators are keeping their networks smaller in a continued effort to keep ...



• Advice Line
• Database Underground
• The Deep End
• Enterprise Mac
• Geeks in Paradise
• Grid Meter
• The Gripe Line
• InfoWorld Daily
• Inside IT
• IT Troubleshooter
• ITXtreme
• Open Sources
• ProdBlog
• Real World SOA
• Reality Check
• Security Adviser
• SMB IT
• The Storage Network
• Tech Watch
• Virtualization Report
• Zero Day

ADVERTISEMENT


RESOURCE CENTERadvertisement 

GOVERNMENT IT & POLICY
'If you don't go after the network, you're never going to stop these guys. Never.'
From the State Department, All the News for Inquiring Minds
TechPresident, the Internet Citizenry's New Consensus Taker



Sponsored Technology Links

 
 
 HOME  NEWS  BLOGS  PODCASTS  VIDEOS  TECHNOLOGIES  TEST CENTER  EVENTS  CAREERS   About | Advertise | Awards | RSS | Contact Us 

Copyright © 2008, Reprints, Permissions, Licensing, IDG Network, Privacy Policy, Terms of Service.
All Rights reserved. InfoWorld is a leading publisher of technology information and product reviews on topics including viruses,
phishing, worms, firewalls, security, servers, storage, networking, wireless, databases, and web services.

CIO :: ComputerWorld :: CSO :: Demo :: GamePro :: Games.net :: IDG Connect :: IDG World Expo
Industry Standard :: IT World :: JavaWorld :: LinuxWorld :: MacUser :: Macworld :: Network World :: PC World :: Playlist