Question

In: Computer Science

Why is patching software still an issue for companies in the face of current security breaches?...

  1. Why is patching software still an issue for companies in the face of current security breaches? Provide at least two issues that you consider is a result of patching software. Justify your response with one credible resource.
  2. Find another company that in the last five years has been breached and had a major impact on the stock price of that company and personal information that may have been needlessly exposing to the public. Make sure you provide a copy of the link in your response so other students may comment on your article/source.
  3. If you were the administrator for these networks what recommendations would you make? What about your home network are your updates enabled?

Solutions

Expert Solution

Below is one such example of the data breaches and why patching such software becomes very important and also managing the breach and what should be done simultaneously.

Company Data Breaches:

I have an example of the real-life technological security flaw which has been appeared in one of the most used applications,i.e. Adobe Flash Player. So here is the information related to it in detail:

  • The vulnerability which we are going to talk about today is one of the most critical ones and for one of the largest companies "Adobe". This vulnerability left lakhs of the user under danger of getting breached.
  • The name of the vulnerability is "Flash Player Vulnerability" with an identification code "CVE-2018-5002". This vulnerability has been affecting densely in the Middle East region and was brought into vision in June 2018.
  • What actually was the security flaw here? The security flaw was one of the stack-based buffer overflow bugs that have been able to execute arbitrary code.
  • The following vulnerability was allowing the attackers to maliciously craft the Flash object which would help them in executing codes in the victim machine and then execute the range of payloads & actions.

How would have this been prevented?

  • The applications are been vulnerable to buffer overflow bugs when there are certain programming errors or memory leaks left in the programming.
  • Hence, this can be prevented using the right programming methods and also putting the best programming techniques to use so that none of the vulnerabilities are left in open to ruin the applications.
  • There must be thorough testing of the application done before releasing the application publicly and must also make the application good enough for working against the vulnerabilities.

Hence, these are the methods in which the vulnerability could have been prevented.

How did this vulnerability actually work?

  • The vulnerability was allowing the attacker to provide a word file to download and once executed in the victim PC the adobe flash exploits would start running.
  • This file once executed starts executing the shellcode which will then enable the attacker to command and control the servers from which the attacker would gain complete access to the victim machine.

Patch For Vulnerability:

  • The company has declared the patch for the vulnerability and can be patched automatically by installing the updated Flash Player as this was a critical zero-day attack.
  • The patch is available only for the users from East Asia as the vulnerability was highly active in that region.

Hence, this was all on technology security and how to maintain the security levels in order to stay updated and up to the mark.


Related Solutions

List & give an example of ‘real world’ security breaches that actually happened and still happening...
List & give an example of ‘real world’ security breaches that actually happened and still happening as they relate to each of the six dimensions of e-commerce security- (one for each dimension) table 5.3 Integrity Nonrepudiation Authenticity Confidentiality Privacy Availability
why do companies issue preferred stock, explain why.
why do companies issue preferred stock, explain why.
What do you believe is the most proficient and current security software that allows for the...
What do you believe is the most proficient and current security software that allows for the protection of PHI/HIPPA information withing EHR’s on a web-based platform?
2. Explain why companies issue bonds to finance operations. Why do companies prefer bonds than loans...
2. Explain why companies issue bonds to finance operations. Why do companies prefer bonds than loans when they need to borrow?
What are some specific examples of companies that issue common stock? What is the current stock...
What are some specific examples of companies that issue common stock? What is the current stock price? How many shares are outstanding (available to the public)? What is the history of the stock price? Do you think is will increase or decrease over the next year? Please explain. Please be specific and provide proper citation of you research. Also, do not just copy and paste from the website.
Why there is no need of a QA department in software companies who practice xtreme programming....
Why there is no need of a QA department in software companies who practice xtreme programming. Build argument based upon solid reasons.
Discuss why companies decide to issue bonds as a source of finance. (1 mark) Explain why...
Discuss why companies decide to issue bonds as a source of finance. (1 mark) Explain why bond prices have an inverse relationship with interest rate movements. ( 1 mark) Albert Page purchased one of Extra-large Shirt Company’s bonds last year when the market interest rate on similar-risk bonds was 6 percent.   When he purchased the bond, it had seven years remaining until maturity. The bond’s coupon rate of interest (paid semi-annually) is 5 percent and its maturity value is $1000....
Why a company with high current ratio and net working capital would still have a liquidity...
Why a company with high current ratio and net working capital would still have a liquidity problem and not able to cover daily routine expenses.
Discuss the importance of stocks to both a company and shareholders. Why do companies issue stock?...
Discuss the importance of stocks to both a company and shareholders. Why do companies issue stock? What is the importance of intrinsic value of a stock? List one pro and one con of why a company would issue stock compared to a company issuing bonds.
Please provide and discuss three reasons why companies will issue restricted stock to employees in their...
Please provide and discuss three reasons why companies will issue restricted stock to employees in their stock compensation plans..
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT