In our last post, we discussed Spectre and Meltdown, two major vulnerabilities that could affect nearly every computing device in the world. Spectre and Meltdown can allow savvy attackers to copy all the data on a computer. Some manufacturers, such as Microsoft and Intel, issued patches and others are still working on theirs. Read more to find out how to tell if you were patched or need a patch.
Do I need a patch?
The short answer is “yes”. Every server and workstation that has an Intel processor manufactured after 1995 is affected by Meltdown, including Microsoft and Apple based products. Every device with a modern processor including servers, desktops, laptops, and even mobile devices are affected by Spectre. Many other devices — including those that run business networks — are also affected and would need a patch.
Where do I get patches?
Each software and hardware manufacturer is in a different state of response for each of their products. Some products already have patches, some are in development. To determine which products need patching you must research the bulletins issued by each manufacturer. This can be very time consuming. A typical office has at least one firewall, switch, router, server, and laptop or desktop. The task of identifying which products are affected, the state of patch readiness, and applying the patches requires the use of significant business resources.
Contact BBH to learn more about Lookout, our remote monitoring and management solution that includes early insight to potential threats and issues as well as managed patching. Email us at email@example.com or visit our website to learn more about our Defense in Depth protection program.
How do I apply the patches?
Some of the patches issued can be applied in a typical fashion. Due to the nature of the vulnerability, some patches have special dependencies. Dependencies that aren’t handled properly may cause Windows blue screen errors, some of which are unrecoverable. These dependencies must be validated between your antivirus software, Windows registry settings, and the Microsoft patch. Then there is the challenge of coordinating and deploying each of the components.
BBH’s Lookout service provides managed patching and antivirus. This leaves you to focus on your day-to-day business operations while we handle the time-consuming I.T. work that helps keep your environment secure. Contact us to learn about these features and other included services, such as a 24x7x365 helpdesk. You can also email us at firstname.lastname@example.org, or call us at 844-224-4968.