We all know about various prioritization techniques used for targeted vulnerability remediation.
But how will you bring down a huge number of vulnerability count ?Following are the ways which I observed till now:
- Increase compliance percentage for patch management (ensure all the in scope assets are onboarded to patch management solution and patches are getting pushed regularly).
- Disable deprecated protocols such as SMBv1.0 and SMBv1.1 etc.
- Remove softwares which are no longer used in your environment.
- Decommission EOL operating systems (of course after running scream test).
Happy Learning !!
No comments:
Post a Comment