Limiting vulnerability exposure through effective patch management: threat mitigation through vulnerability remediation

dc.contributor.advisorIrwin, Barry Vivian William
dc.contributor.authorWhite, Dominic Stjohn Dolin
dc.date.accessioned2026-03-04T08:22:10Z
dc.date.issued2007,2007-02-08
dc.description.abstractThis document aims to provide a complete discussion on vulnerability and patch management. The first chapters look at the trends relating to vulnerabilities, exploits, attacks and patches. These trends describe the drivers of patch and vulnerability management and situate the discussion in the current security climate. The following chapters then aim to present both policy and technical solutions to the problem. The policies described lay out a comprehensive set of steps that can be followed by any organisation to implement their own patch management policy, including practical advice on integration with other policies, managing risk, identifying vulnerability, strategies for reducing downtime and generating metrics to measure progress. Having covered the steps that can be taken by users, a strategy describing how best a vendor should implement a related patch release policy is provided. An argument is made that current monthly patch release schedules are inadequate to allow users to most effectively and timeously mitigate vulnerabilities. The final chapters discuss the technical aspect of automating parts of the policies described. In particular the concept of 'defense in depth' is used to discuss additional strategies for 'buying time' during the patch process. The document then goes on to conclude that in the face of increasing malicious activity and more complex patching, solid frameworks such as those provided in this document are required to ensure an organisation can fully manage the patching process. However, more research is required to fully understand vulnerabilities and exploits. In particular more attention must be paid to threats, as little work as been done to fully understand threat-agent capabilities and activities from a day to day basis.,TeX output 2007.02.08:2212,Adobe Acrobat 9.51 Paper Capture Plug-in
dc.description.degreeMaster's thesis
dc.description.degreeMSc
dc.format.extent203 pages
dc.format.mimetypeapplication/pdf
dc.identifier.otherhttp://hdl.handle.net/10962/d1006510
dc.identifier.urihttps://researchrepository.ru.ac.za/handle/123456789/5880
dc.languageEnglish
dc.publisherRhodes University, Faculty of Science, Department of Computer Science
dc.rightsWhite, Dominic Stjohn Dolin
dc.subjectComputer networks -- Security measures
dc.subjectComputer viruses
dc.subjectComputer security
dc.titleLimiting vulnerability exposure through effective patch management: threat mitigation through vulnerability remediation
dc.typeAcademic thesis

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Limiting_vulnerability_exposure_through_effective__vital_4629.pdf
Size:
1.13 MB
Format:
Adobe Portable Document Format