{"id":10097,"date":"2023-02-01T16:06:34","date_gmt":"2023-02-01T03:06:34","guid":{"rendered":"https:\/\/kinetics.co.nz\/?p=10097"},"modified":"2023-02-01T16:06:34","modified_gmt":"2023-02-01T03:06:34","slug":"is-automated-microsoft-patching-enough","status":"publish","type":"post","link":"https:\/\/new.kinetics.co.nz\/?p=10097","title":{"rendered":"Is automated Microsoft patching enough? \u00a0"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_row _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221; sticky_enabled=&#8221;0&#8243;]<\/p>\n<p><strong>Microsoft have been releasing patches for 30 years. It\u2019s easy to become blas\u00e9 about them.<\/strong><\/p>\n<h2>Yes, Microsoft <span style=\"text-decoration: underline;\">can<\/span> automatically apply updates to Windows and Office.<\/h2>\n<h2>But that does not mean that you can rely on it.<\/h2>\n<p><strong>Any system is only as good as how well it is monitored<\/strong>.<\/p>\n<p>After all, there is no such thing as \u201cset and forget\u201d. It is a myth (like self-cleaning ovens). Left to their own devices, there is a failure rate for everything. Even more, once they have failed, they stay failed. They don&#8217;t magically fix themselves. That means that if one device is not up to date today, it&#8217;s still broken tomorrow.\u00a0 Even worse, it quickly becomes two when another fails, and so on.<\/p>\n<p>That\u2019s why we recommend our <a href=\"https:\/\/new.kinetics.co.nz\/proactive-it-service-and-support\/\">KARE<\/a> system. KARE has become more and more sophisticated over the years, with more services.\u00a0 But it\u2019s the basic foundational protections that are still so incredibly important. Patching is one of those, because it has to be done well, and consistently well. It is monitored assiduously, and if we notice a device misses its updates, then we intervene. We have various alerts, prompts and reports to make sure we keep all the software on <a href=\"https:\/\/new.kinetics.co.nz\/proactive-it-service-and-support\/\">KARE<\/a> devices updated.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;]<\/p>\n<h2>When the rubber hits the road<\/h2>\n<p>In just one example, in August 2022, Microsoft patched a dangerous bug which had been discovered by the NSA in the United States. Since then, the wider community has shared \u2018proof of concept\u2019 (POC) process for exploiting that bug. That\u2019s intended to help developers keep their software secure, but we expect that hackers will also jump on the POC work and quickly turn that into active exploits.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row column_structure=&#8221;1_2,1_2&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221;][et_pb_text _builder_version=&#8221;4.27.4&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; global_colors_info=&#8221;{}&#8221; theme_builder_area=&#8221;post_content&#8221; sticky_enabled=&#8221;0&#8243;]<\/p>\n<h2>The bottom line: Every device that accesses your organisation&#8217;s data needs to be protected.<\/h2>\n<p>That&#8217;s PCs, Macs, and even mobiles.\u00a0 \u00a0They all need to be patched at the very least.\u00a0 But if you assume you are patched, and don&#8217;t monitor and check it.\u00a0 If so, you are vulnerable. If one device missed the updates, then it is vulnerable.\u00a0 The same applies to your end-point protection <em>(remember &#8211; old fashioned antivirus isnt enough these days either)<\/em><\/p>\n<p>That is the undeniable foundational value of <a href=\"https:\/\/new.kinetics.co.nz\/proactive-it-service-and-support\/\">KARE<\/a>. It isn\u2019t exciting, but it is important. Every day, our <a href=\"hhttps:\/\/kinetics.co.nz\/proactive-it-service-and-support\/\">KARE<\/a> team is working to maintain patching for our clients, to intervene when a system misses an update and to fix any issues.<\/p>\n<p>In these days of enhanced cyber-risk, that matters. You can have all the layers of security in the world, but they are sitting on top of something that is missing a basic level of protection, then you have an elevated risk..<\/p>\n<p>Whether our clients have ther own IT teams or totally rely on us, having a foundational active patching system like<a href=\"https:\/\/new.kinetics.co.nz\/proactive-it-service-and-support\/\"> KARE<\/a> means they have this foundation in place.<\/p>\n<p>&nbsp;<\/p>\n<p>[\/et_pb_text][\/et_pb_column][et_pb_column type=&quot;1_2&quot; _builder_version=&quot;4.17.4&quot; _module_preset=&quot;default&quot; global_colors_info=&quot;{}&quot; theme_builder_area=&quot;post_content&quot;][et_pb_image src=&quot;https:\/\/new.kinetics.co.nz\/wp-content\/uploads\/2023\/02\/Roadworks.jpg&quot; title_text=&quot;Roadworks&quot; _builder_version=&quot;4.17.4&quot; _module_preset=&quot;default&quot; global_colors_info=&quot;{}&quot; theme_builder_area=&quot;post_content&quot;][\/et_pb_image][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft have been releasing patches for 30 years. It\u2019s easy to become blas\u00e9 about them. Yes, Microsoft can automatically apply updates to Windows and Office. But that does not mean that you can rely on it. Any system is only as good as how well it is monitored. After all, there is no such thing [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":10099,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[4,5],"tags":[],"class_list":["post-10097","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-security"],"_links":{"self":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/10097","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=10097"}],"version-history":[{"count":0,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/wp\/v2\/posts\/10097\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=\/"}],"wp:attachment":[{"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=10097"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=10097"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/new.kinetics.co.nz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=10097"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}