Skip to main content
Question

Zero Day Attacks

  • March 8, 2019
  • 3 replies
  • 10 views

Forum|alt.badge.img+5

I am the Jamf Admin for our small org of 250 people. I want to know how other admins approach security as far as updating software when zero day attacks hit. I stay tuned to zdnet.com but there has to be something else I should be paying attention to in order to make sure I get ahead of these types of attacks. My main goal is I don't want to be notified by my VP of IT that a zero day attack occurred and to push an update. I want to be the one that notifies him and then pushes the update.

3 replies

Forum|alt.badge.img+15
  • Valued Contributor
  • March 8, 2019

I would follow the security and security-alerts channels in the MacAdmins Slack if you want fairly immediate news. As far as patching, a lot of that is based on the specific app.

Chrome's a good example where the auto-update feature is pretty good. Yes, you can technically push out a new version, but most clients will already be patched.

Also... some VPs are gonna do their own thing and alert you regardless if you have already advised them of an exploit. Or they pride themselves on being "up to date" with security news.


Forum|alt.badge.img+2
  • New Contributor
  • March 8, 2019

I'm following US Cert (https://www.us-cert.gov) - I guess that's a pretty good overview of current vulnerabilities and trends.


Forum|alt.badge.img+5
  • Author
  • Contributor
  • March 8, 2019

Thank you @sshort & @groiss I appreciate both of your inputs. That MacAdmins Slack channel is slick man!!! Thank you!!! And I will throw us-cert.gov into the rotation along with zdnet and anything else anyone would like to add to add to this discussion. Very cool guys thanks!!!