Full Disclosure mailing list archives

RE: Re: Microsoft Security, baby steps ?


From: "Full-Disclosure" <fd () weevers net>
Date: Thu, 18 Mar 2004 09:17:08 +0100

"Geo." <geoincidents () getinfo org> wrote:

... Even the stupid check tools assume you have the thing 
on the net 
before it's patched.

Yep, yet there are still MS apologists who refuse to open 
their eyes so 
as to understand that "Microsoft still shows little hint that 
it 'gets' 
security".


Regards,

Nick FitzGerald

In an corporate environment, you will have SUS or SMS running.
If so, no need for internet access.

If you don't have this, just place a firewall on the box, or before the
box.
How hard can this be ? You do it the same way, as you would do before
you
would patch debian/*bsd/gentoo/ect/ect/ect.

There is no real problem here. Don't blame microsoft if you can't come
up with solutions to simple security "problems".

Niek

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: