Every Microsoft vulnerability discovered in 2014 can be blocked by removing the user's administrator (admin) privileges.
British security company Avecto discovered that 92% of Microsoft vulnerabilities could be eliminated by removing admin privileges in 2013 by researching a patch announcement issued by Microsoft over the past year. In 2014, the number rose 97%.
The report shows that 97% of the data is taken apart. Windows system vulnerabilities are mainly composed of IE vulnerabilities and Office vulnerabilities. The proportion of admin rights mechanisms in these two types of vulnerabilities is 99.5%. And 95%.
Avecto took a very simple approach to investigating whether system permissions were mentioned in Microsoft's official vulnerability bulletin. Such a description: "Those users with lower privilege levels will be less affected than users with admin rights".
Of course, "less impact;" This does not mean that all of these vulnerabilities will be completely harmless after removing the admin rights mechanism. But in many cases it is.
It’s shocking that the number of critical vulnerabilities in Microsoft soared to 240 in 2014, a 63% increase over 2013, which means that Avecto’s report this year may be more convincing to companies. force.
IT organizations need multiple strategies to deal with the sudden increase in the number of dangerous vulnerabilities. According to the Avecto organization, the operating system permissions mechanism preferably does not exist from the beginning.
Generally speaking, you should not give your work computer administrator privileges, although this is easier said than done. Many versions of Windows are running older versions of the application, and in many cases, removing administrator privileges can be inconvenient.
Avecto's head of Europe said that the 2014 report consistently demonstrated the benefits of removing system privileges. Repeated experience shows that removing system privileges is a simple and effective defense strategy, but many companies are not aware of the importance of this.
People have some misunderstandings about passive defense, such as detection technology can provide complete defense. Despite clear evidence that the current strategy is overwhelmed by the changing offensive approach.
Enterprises can use the Defendpoint (formerly Privilege Guard) software to manage system privileges, which provides sandboxing and application control modules.
If the user can not obtain the administrator-level key permissions, the installation program and other operations will effectively control the harm of malicious programs.
Permissions management can solve most advanced network attacks, especially when used in conjunction with other proactive defense strategies. These proactive strategies include application control, patch management, and sandboxing.
The Microsoft Windows team today released a new video related to the Windows 10 upgrade, which is ca
Windows 10 Anniversary Update is expected to be launched on August 2, Microsofts preview version lau
Now its paperless office. In order to make the computer run fast, we will uninstall some unused soft
In Windows 8.1, the desktop can be set to log in directly. But some people like to boot into the sta
Windows 7 64-bit system manually add Editplus to the right mouse button
Win7 webpage playing no sound how to do
Win8.1 synchronizes application data between different computers to continue the previous work.
Win10 update 10122/10074 three patches: for IE browser vulnerability
Software uninstallation method installed from Win10 app store (Graphic tutorial)
Win 10 Mobile Preview 10134 Cool Exposure
Win7 Ultimate display /hidden file viewing method introduction
The Win10 system can't start the Windows Security Center service phenomenon solution (graphic)
What should I do if the Win8 desktop icon turns white? Win8 desktop icon whitening 2 solutions
Win10 preview version 9926 official system ISO how to download?
Win8 open sharing prompts need to enter network credentials 0x000000709 how to do?
Vbox virtual machine installation Win8 consumer preview version of the tutorial
Iqiyi vip play error 104, 504 solution
Prevent user password loss. Use U disk to generate password reset disk
Win7 uses the system firewall to restrict the specified program to connect to the network tutorial
What should I do when I play music on my computer?
Win7 mouse right button no response menu can not pop up how to do
Steps to establish a LAN under Windows XP