[Full-disclosure] Getting Off the Patch

Thor (Hammer of God) thor at hammerofgod.com
Fri Jan 14 21:01:15 GMT 2011


>-----Original Message-----
>From: Zach C [mailto:fxchip at gmail.com]
>Sent: Friday, January 14, 2011 12:31 PM
>To: Thor (Hammer of God)
>Cc: lists at isecom.org; Valdis.Kletnieks at vt.edu; phocean; full-
>disclosure at lists.grok.org.uk
>Subject: Re: [Full-disclosure] Getting Off the Patch
>
>Just on top of this, I would like to ask a question of Pete in the form of an
>example.
>Just on top of this, I would like to ask a question of Pete in the form of an
>example.

Excellent example.  I'd like to also throw one in that has network connectivity consequences.   Regarding SQL Slammer - what would have given 100% protection from Slammer.  Outside of the obvious ones like firewalls and such which are already deployed.  That's a "real life" example, and I'm interesting in what controls would have already been in place. 

t



Full-Disclosure is hosted and sponsored by Secunia.