The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft’s painless ‘Patch Tuesday’
Time: 00:00 EST/05:00 GMT | News Source: Red Herring | Posted By: Chris Hedlund

After 14 months of security updates, Microsoft finally gives techies—and consumers—‘Patch Tuesday’ off. But ‘no fixes’ doesn’t mean ‘no problems.’

Microsoft has announced that it does not expect to release security patches on Tuesday. The news comes as a welcome surprise for IT staffers and consumers alike, who have had to install Microsoft patches each month since January 2004. The grand total: 49 fixes. The company makes its digital band-aids available on the second Tuesday of each month. Last month, Windows users faced the specter of downloading and installing 12 hefty fixes, including critical fixes for its Internet Explorer web browser. This can cost millions of dollars for large companies like Citibank, which have hundreds of thousands of computers to secure. But “no patches” doesn’t mean “no problems.” “It could be that they do have some vulnerabilities that they’re working on and choosing not to release them at this point,” said Firas Raouf, COO of eEye Digital Security, a vulnerability research and intrusion-protection startup. “They don’t have anything outstanding from us, but that doesn’t mean that they don’t have other vulnerabilities from other researchers.”

Write Comment
Return to News

  Displaying 1 through 25 of 309
Last | Next
  The time now is 7:01:37 AM ET.
Any comment problems? E-mail us
#1 By 8241 (69.193.56.15) at 3/8/2005 6:10:18 AM
Some pain from the previous patches: http://www.google.ca/search?hl=en&q=885250+problem&meta=

#2 By 2960 (156.80.64.60) at 3/8/2005 8:23:46 AM
Ok, so they are taking a month off. But, dammit, they NEED TO FIX IE!

I am SO sick of spending hours and hours and hours (and hours) removing Spyware from machines that got hit by drive-by installs.

You can't blame the user. They never get prompted, and never know the crap gets installed.

Sure, the majority of Spyware gets installed by user action (and most of THAT is via social engineering), but this drive-by nonsense has got to be stopped.

And it can't be just for SP2 users or Longhorn users. It needs to be retroactive back through at least Win2K.

TL

#3 By 23603 (216.94.216.26) at 3/8/2005 10:05:57 AM
Techlarry:
I am pretty sure that you are aware of that but about 97% of spywares ccomes from explicit site, warez...etc....you get the point.

Why don't you use a third party software like surfcontrol that block all those site.

we use ISA 2004 with surfcontrol, to block ALOT of site and I can assure you, that we RARELY get spywares.



#4 By 2960 (156.80.64.60) at 3/8/2005 11:57:02 AM
#3,

Not my decisions. I'm just the guy with the Pooper Scooper.

TL

#5 By 19992 (164.214.4.31) at 3/8/2005 12:46:15 PM
#4 Easy - testing. where I work we have to test that the patch isn't going to cause any problems with any 3rd party COTS packages and to make sure that all in house apps will not break as a result of applying the patch.

Each patch ends up getting tested about 40 different times once all of the different workstation builds and custom apps are taken into account. I'm sure that Citibank is run in a similar fashion.

#6 By 19992 (164.214.4.31) at 3/9/2005 11:47:00 AM
quux - I'm not sure what the bill totals are for us on a per patch basis. But, once you take into account engineer time to test, end user pilots and rolling the patch into the current baseline I can see the price tag hitting about 10K per patch per unique system build.

#7 By 19992 (164.214.4.31) at 3/9/2005 12:37:10 PM
#9 - No, actually I think my numbers are fairly conservative. I ran some basic numbers and just to test, pilot, rollout, update baselines and update documentation comes out to around $6875 for the workstations alone. I assumed a total of 195 people (this covers engineers, pilot users, baseline managers, 1 SMS person to build the package and the docs team) each spending 1 hour per patch @ $35 per hour (testing takes more time than this, but I think it evens out since the docs only take about 15 minutes per patch)

The servers go through a more rigorous testing process. Since we can only patch our servers during off hours (middle of the night or weekends) I'm fairly certain that we spend more than 4K per patch to get these tested and updated.

As best as I can figure it (I don't have exact numbers) My company has over 30K Windows workstations and well over 2000 Windows servers.

edit - correct spelling mistakes

This post was edited by happyguy on Wednesday, March 09, 2005 at 12:41.

#8 By 16451 (67.131.75.3) at 3/9/2005 7:26:05 PM
No patches? Huh. I show they released two for Win98 platform. And they even crashed our first test system.

#9 By 19992 (164.214.4.31) at 3/10/2005 10:32:20 AM
quux

1) Actually the 195 people was based on 150 pilot users. The adjusted numbers (as done by you) would increase back up to $2450 (70 hours @ $35/hour)

2) Patch sets, agreed and we do. However, not all patches are applied to the baselines which results in different SMS packages being pushed.

3) Server admin salary - true the admins are paid a salary, but all salaries can be broken down to an hourly wage equivalent. How much of their salary was dedicated to patch management asopposed to other issues?

Patches failing our testing - It varies by business unit. We generally have at least 2 groups that are not able to use a patch each time around. If we had blindly applied the patch to the workstations, or not performed the level of testing that we do we would have lost a lot of important functionality.

As for costs, true the number for workstation patching isn't incredibly high (as compared to the Citibank quote would lead one to believe), however, those numbers did not include server patching. Also, the initial testing done by the baseline maintainers is largely performed on a test network with it's own SAN (replicated to mulitple sites) and EMC Centera structures (replicated to multiple sites) riding on it's own WAN lines, so the $7K is money well spent in our eyes if it prevents us from losing any critical data.

As for how your company handles patches, it sounds like a good idea for a smaller company. However I've got over 30K workstations to push these out to and over 60 in house apps that are directly supported by a development team.

For server patches we used to do the same thing you do until we had a patch on Win2K server that changed how the TCP/IP stack addressed packets (it was a minor change and didn't break anything in Windows) however one of our custom apps stopped working properly this resulted in about 80 hours of downtime on a mission critical system.

Another patch we deployed changed the functionality of the Cisco VPN client (due to similar changes in the TCP/IP stack). As such we were no longer able to properly monitor traffic over the VPN links (although the client still worked). We ultimately had to work with Cisco to write a custom version of the client at significant cost to us.

After these experiences we started to put safeguards in place to prevent this from happening again.

#10 By 19992 (164.214.4.31) at 3/11/2005 9:38:26 AM
quux - I understand the issues your company is having over in-house apps and patches being thrown together, and the resulting desire to move to 3rd party programs. Unfortunately, that just isn't an option for us.

As for an org spending millions testing new patches I can easily see several of the larger banks doing this as well as portions of the US Government (military especially). After all, if a patch slips through the process and a bug was not caught it could end up costing investors billions (bank scenario) or human life (military scenario).

Most companies will not spend millions on patches. Some will only spend $35 (based on our #s above) on patch rollouts a la LinuxisTheft/Parkker/Parker.

#11 By 4240821 (213.139.195.162) at 10/26/2023 1:50:08 PM
https://sexonly.top/get/b623/b623tyhxzluywbcknof.php
https://sexonly.top/get/b355/b355bpaqpksbtiqvzgl.php
https://sexonly.top/get/b914/b914rnnwhyixezajtyt.php
https://sexonly.top/get/b545/b545pvzkrguebqpbjln.php
https://sexonly.top/get/b190/b190knkrrwkakkjsofl.php
https://sexonly.top/get/b49/b49yjzwscsxtttcsgb.php
https://sexonly.top/get/b31/b31mzmltcpicfuepyx.php
https://sexonly.top/get/b981/b981rhisdkkpyuavezt.php
https://sexonly.top/get/b752/b752wdjfkqrgzhkargt.php
https://sexonly.top/get/b981/b981supskljkluqcjlr.php
https://sexonly.top/get/b404/b404zgqiaovfhgyhgoz.php
https://sexonly.top/get/b617/b617voigzhuocqvvopu.php
https://sexonly.top/get/b57/b57yaxxpvazstymqtz.php
https://sexonly.top/get/b378/b378uiblvbolpjgjyvt.php
https://sexonly.top/get/b872/b872qqhwswmjoesemet.php
https://sexonly.top/get/b999/b999ymmsdwhxcnfnqbw.php
https://sexonly.top/get/b602/b602anciyzzpbzlvdxg.php
https://sexonly.top/get/b452/b452cszlgyukmchqngv.php
https://sexonly.top/get/b978/b978aiucehavhergfwd.php
https://sexonly.top/get/b951/b951thnrrvxtxealtri.php
https://sexonly.top/get/b359/b359kyjsvbbdxjkfqoo.php
https://sexonly.top/get/b824/b824cryxnbtkuivtbwp.php
https://sexonly.top/get/b296/b296eyxwdkvdxeijntd.php
https://sexonly.top/get/b75/b75bymcgvsydtfjpjp.php
https://sexonly.top/get/b572/b572guohqccgvyizhbq.php
https://sexonly.top/get/b21/b21uqdxamogautyago.php
https://sexonly.top/get/b832/b832ohzniqifwtgcjea.php
https://sexonly.top/get/b0/b0tzpcpiicfkggxwu.php
https://sexonly.top/get/b473/b473vkycqnkfyazuvkr.php
https://sexonly.top/get/b355/b355izfvfshygtwjiyj.php
https://sexonly.top/get/b534/b534ppsojwbdypmvile.php
https://sexonly.top/get/b308/b308wizaiwedkbdmwtj.php
https://sexonly.top/get/b465/b465swiuqedswajcekr.php
https://sexonly.top/get/b837/b837xkfisxbadnrjuim.php
https://sexonly.top/get/b656/b656hypyxxttdngrozy.php
https://sexonly.top/get/b401/b401vfsayxvkrlocevh.php
https://sexonly.top/get/b91/b91gwkmhmtiglmeltf.php
https://sexonly.top/get/b587/b587qwhagjrmrxhcdke.php
https://sexonly.top/get/b480/b480tbpxgwozelmivir.php
https://sexonly.top/get/b970/b970sdrhxrsqxggspqt.php
https://sexonly.top/get/b110/b110optdykhxirfnlnq.php
https://sexonly.top/get/b633/b633bxejasopcwxkphc.php
https://sexonly.top/get/b19/b19qgypvmxldxcnaal.php
https://sexonly.top/get/b536/b536lbvihrggiedakpl.php
https://sexonly.top/get/b721/b721zlamszarooicnth.php
https://sexonly.top/get/b153/b153hfrwpnbadhzvtbz.php
https://sexonly.top/get/b75/b75sbskrfpmfsooipz.php
https://sexonly.top/get/b325/b325aqgqjrmoiqxazst.php
https://sexonly.top/get/b146/b146ngzkvthssifmhpa.php
https://sexonly.top/get/b410/b410ovystnilejpfztf.php

#12 By 4240821 (103.151.103.150) at 10/30/2023 11:47:40 AM
https://www.quora.com/profile/KristyKnight950/Hopestar09-Heauxbagel-Bby7angel-QueenArtemisToes-Deja-May-Evelyn-Jacobs-Luscious-Lilli-Nasty-T-Baby-ang
https://www.quora.com/profile/MikeRogers88/SilverZebraFish-loserlexxx-Avawxoxo-feliciafisher-Stellavon89-Chelsie-Carley-SilverAroara-Enola-Fischer
https://www.quora.com/profile/ChrisFerrantello43/Trinity-Morgana-Emptybby-Frenchy2022-thicknprettyyy-Alison-Star-GoldAmethyst-SabrinaMmoorree-ultra_violet_
https://www.quora.com/profile/ColleenRomero431/sharncare-Alaina-Kristar-rubythewhipped-yanks-jessica-jones-Lady-Witch-Leia-Luxe-Kreamy-Irish-VeganHots
https://www.quora.com/profile/DanielleClark503/kitti_sarah-Cassie-Cage-riku-mizusawa-brujababy-Ambieee96-Mommabearof2-Sophia-Delilah-mystique_wolf-rose
https://www.quora.com/profile/TylerWeiss912/kristine-kahill-Alissa-Noir-fit_kitty-h3yPaula-MsFault69-missa_alissaxxo-Cashbaby_-evadream-Maria-Nae
https://www.quora.com/profile/AndreaHansen543/m00nspider-MaddyFetish69-SavoryDee-ElectraScorpio-Sophie_Lake-CeeCeeKinkyCpl-Anima-blue-mackAndjen2017-C
https://www.quora.com/profile/KatrinaDavis457/hina-misaki-YourGamerGf-SugarTits_95-Lina-Leggs-Mikaelaoficial1-Natashaaxoxo-Nawtygirl32-kittycourt7-Kri
https://www.quora.com/profile/MichaelLeblanc165/Thekiddweeb-LilPrincessAnya-kaykittyy-brujitaylolo-ivymay522-Scarlet-James-301-racheallovelust-LiquidBarbi
https://www.quora.com/profile/EricSyrene63/BabyFaans-Elise-Johnson-WorshipAlexa-Unjmd-Xxrosse21-KBsFantasy-Queen-Crystal-stellayomonay-Witchbb13

#13 By 4240821 (103.152.17.80) at 10/31/2023 6:57:53 AM
https://app.socie.com.br/starstaxxShyGirl8889
https://app.socie.com.br/natashabelle1Sweetmintsexi
https://app.socie.com.br/itsbambibaoRoachWitch
https://app.socie.com.br/KaseyOdayinThaikitty
https://app.socie.com.br/read-blog/98325
https://app.socie.com.br/read-blog/97191
https://app.socie.com.br/read-blog/97420
https://app.socie.com.br/read-blog/97634
https://app.socie.com.br/lovelymermaidMyAsianToy
https://app.socie.com.br/JadeSinclairxhotauburn

#14 By 4240821 (103.151.103.150) at 10/31/2023 1:21:52 PM
https://app.socie.com.br/read-blog/97242
https://app.socie.com.br/melodymarksEbonymistress955
https://app.socie.com.br/KinkyBbwCurves77Jodieluvbug
https://app.socie.com.br/CurvyAmbitions36SunShineBear
https://app.socie.com.br/read-blog/97995
https://app.socie.com.br/TatumBaileyMarvelousV
https://app.socie.com.br/PurtyNPink20Alicerose993
https://app.socie.com.br/SophStealpaulabrenlla
https://app.socie.com.br/DahliathiccFuckherwell
https://app.socie.com.br/read-blog/97503

#15 By 4240821 (62.76.146.75) at 11/1/2023 8:00:07 PM
http://activewin.com/mac/comments.asp?ThreadIndex=14210&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=75699&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=2376&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=1705&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=33235&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=2211&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=29783&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=74358&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=62385&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=8838&Group=Last

#16 By 4240821 (109.94.218.82) at 11/2/2023 7:07:11 PM
http://activewin.com/mac/comments.asp?ThreadIndex=36356&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=85144&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=54166&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=84214&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=85300&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=73309&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=29410&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=8099&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=41648&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=28670&Group=Last

#17 By 4240821 (212.193.138.10) at 11/3/2023 7:49:22 PM
http://activewin.com/mac/comments.asp?ThreadIndex=23581&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=80946&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=27404&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=77584&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=59448&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=49207&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=3013&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=54149&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=22754&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=10658&Group=Last

#18 By 4240821 (109.94.216.41) at 11/5/2023 3:57:59 AM
https://hotslutss.bdsmlr.com/post/660584627
https://hotslutss.bdsmlr.com/post/656791025
https://hotslutss.bdsmlr.com/post/654080781
https://hotslutss.bdsmlr.com/post/651903949
https://hotslutss.bdsmlr.com/post/659910764
https://hotslutss.bdsmlr.com/post/652150750
https://hotslutss.bdsmlr.com/post/659362809
https://hotslutss.bdsmlr.com/post/657100995
https://hotslutss.bdsmlr.com/post/653297909
https://hotslutss.bdsmlr.com/post/651414280

#19 By 4240821 (92.119.163.194) at 11/6/2023 12:15:20 PM
https://printable-calendar.mn.co/members/19895969
https://printable-calendar.mn.co/members/19910948
https://printable-calendar.mn.co/members/19907139
https://printable-calendar.mn.co/members/19910259
https://printable-calendar.mn.co/members/19907572
https://printable-calendar.mn.co/members/19894242
https://printable-calendar.mn.co/members/19901106
https://printable-calendar.mn.co/members/19911924
https://printable-calendar.mn.co/members/19908169
https://printable-calendar.mn.co/members/19920158

#20 By 4240821 (62.76.146.75) at 11/8/2023 3:49:56 AM
https://www.hackerearth.com/@itandreamas1970
https://www.hackerearth.com/@planofarac1980
https://www.hackerearth.com/@abemacan1981
https://www.hackerearth.com/@tiemalpuiper1986
https://www.hackerearth.com/@basvilevil1973
https://www.hackerearth.com/@conttrantingcy1982
https://www.hackerearth.com/@dequarero1974
https://www.hackerearth.com/@riequetachve1989
https://www.hackerearth.com/@amriparttar1982
https://www.hackerearth.com/@stitanuanal1970

#21 By 4240821 (45.146.26.215) at 11/10/2023 4:03:02 PM
http://www.ttbizonline.com/pro/20231109223117
http://www.ttbizonline.com/pro/20231109205719
http://www.ttbizonline.com/pro/20231109124053
http://www.ttbizonline.com/pro/20231109215755
http://www.ttbizonline.com/pro/20231109195157
http://www.ttbizonline.com/pro/20231109163846
http://www.ttbizonline.com/pro/20231109120416
http://www.ttbizonline.com/pro/20231109193050
http://www.ttbizonline.com/pro/20231109065450
http://www.ttbizonline.com/pro/20231109102358

#22 By 4240821 (109.94.216.41) at 11/12/2023 4:16:09 AM
https://www.mddir.com/company/cameron-canela-patreon-leaked/
https://www.mddir.com/company/megumi-meguro-onlyfans-leaked/
https://www.mddir.com/company/sera-sunshine-patreon-leak/
https://www.mddir.com/company/jupiterdomina-patreon-leaked/
https://www.mddir.com/company/thesuccubusdemon-onlyfans-leak/
https://www.mddir.com/company/kay_phoenix-onlyfans-leak/
https://www.mddir.com/company/jaysiejade-manyvids-leak/
https://www.mddir.com/company/jessica_rose69-onlyfans-leaked/
https://www.mddir.com/company/pinkskye2022-onlyfans-leaked/
https://www.mddir.com/company/kinkynatalia-manyvids-leaked/

#23 By 4240821 (194.190.178.141) at 11/12/2023 9:46:44 AM
https://instem.res.in/comment/reply/3742/720443
https://instem.res.in/comment/reply/2646/720389
https://instem.res.in/comment/reply/3341/720473
https://instem.res.in/comment/reply/2557/720258
https://instem.res.in/comment/reply/2557/720249
https://instem.res.in/comment/reply/2557/720286
https://instem.res.in/comment/reply/3790/720426
https://instem.res.in/comment/reply/2557/720360
https://instem.res.in/comment/reply/2557/720294
https://instem.res.in/comment/reply/2897/720475

#24 By 4240821 (45.146.26.215) at 11/13/2023 2:11:43 PM
https://sexonly.top/get/b522/b522zbdzcgexyjvmogz.php
https://sexonly.top/get/b586/b586zeevjowcpfeygfw.php
https://sexonly.top/get/b393/b393jxvnteimozzdoqq.php
https://sexonly.top/get/b145/b145sighxnswcupnpkw.php
https://telegra.ph/DaintyWilder-Sloppy-Patreon-Leaked-01-01-2
https://sexonly.top/get/b454/b454mwtviiglpvwiiio.php
https://sexonly.top/get/b954/b954mlxfkqkrlpmeujn.php
https://sexonly.top/get/b345/b345nilzcuwsnrgqxdx.php
https://sexonly.top/get/b892/b892monnbbinsajggli.php
https://sexonly.top/get/b589/b589xauqigodaafqtye.php

#25 By 4240821 (62.76.153.10) at 11/14/2023 10:43:22 PM
https://sexonly.top/get/b275/b275rrevhrvexxzjpfz.php
https://sexonly.top/get/b223/b223xpuoavtcrjsuqrx.php
https://sexonly.top/get/b666/b666hvreohanepcvpwb.php
https://sexonly.top/get/b488/b488gxfrymmwbsgilmh.php
https://sexonly.top/get/b621/b621cmzmlivvbczylrb.php
http://activewin.com/mac/comments.asp?ThreadIndex=22875
https://sexonly.top/get/b530/b530vnulonpuagmqazc.php
https://sexonly.top/get/b241/b241sbmlsssyhkpiegp.php
https://sexonly.top/get/b532/b532orwbcubmnlwvkis.php
https://sexonly.top/get/b550/b550jlqhqayotfbrjjq.php

Write Comment
Return to News
  Displaying 1 through 25 of 309
Last | Next
  The time now is 7:01:37 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *