Beyond Patching
Aimei Wei is CTO and co-founder of Stellar Cyber. She said patching definitely pays off for known vulnerabilities and it greatly reduces the attack surface.
“However, it is hard to guarantee that the patch is always immediately available for the software version you are using and can be applied in time,” she said. “[An] organization’s continued security vigilance and enforcement of standards can dramatically reduce the chances for exploitation from exposed risks. However, the exposed risk, even for a short period of time, may still be exploited. Having a detection and response system that can continuously monitor the environment, detect the exploitation and stop the attack from progression to an incident covers the cases missed by not in-time patch or not consistent enforcement, or short period of time for exposed risks.”