A common method to avoid attacks is to "patch" the vulnerabilities as soon as possible after the software company develops a piece of repair software--a patch--for the problem. Patch management is the process of identifying, acquiring, installing and verifying patches for products and systems. The earlier guidance on patching, Creating a Patch and Vulnerability Management Program, was written when patching was a manual process. The revision, Guide to Enterprise Patch Management Technologies,* is designed for agencies that take advantage of automated patch management systems such as those based on NIST's Security Content Automation Protocol (SCAP).
Guide to Enterprise Patch Management Technologies explains the technology basics and covers metrics for assessing the technologies' effectiveness. The second security document provides guidance to protect computer systems from malware--malicious code. Malware is the most common external threat to most systems and can cause widespread damage and disruption.
NIST's Guide to Malware Incident Prevention and Handling for Desktops and Laptops** was updated to help agencies protect against modern malware attacks that are more difficult to detect and eradicate than when the last version was published in 2005. The new guidance reflects the growing use of social engineering and the harvesting of social networking information for targeting attacks.
The new malware guide provides information on how to modernize an organization's malware incident prevention measures and suggests recommendations to enhance an organization's existing incident response capability to handle modern malware.
*Guide to Enterprise Patch Management Technologies (NIST Special Publication 800-40, Revision 3) is available at: http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-40r3.pdf .
**Guide to Malware Incident Prevention and Handling for Desktops and Laptops (Special Publication 800-83 Revision 1) can be found at: http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-83r1.pdf.
TNS 30VianaGem - 130821-4462485 30VianaGem
Most Popular Stories
- SpaceX's Satellite Launch Is 'Game-Changer'
- Reid Confident Congress to Pass Immigration Bill
- Maui Visitor Killed in Shark Attack
- Donors Abandon GOP Over Gun Stance
- Mexico: 'Extremely Dangerous' Radioactive Material Stolen
- CEOs More Optimistic About Economy, Hiring
- Climate Change Early Warning System Urged
- Private Sector Employment Surges by 215,000 Jobs
- Newtown 911 Tapes Being Released Today
- Wisconsin Gov. Campaign Aide Fired Over Tweets