Re: Zotob worm patch?



Leythos <void@xxxxxxxxxxx> wrote in
news:MPG.1d6ecc5f328d8c0b989c5a@xxxxxxxxxxxxxxxxxxxxxxxxxxx:

> In article <Xns96B69D488FAC6bobarcabca@xxxxxxxxxxxxx>,
> bob@xxxxxxxxxxxxxxxxxxx says...
>> Leythos <void@xxxxxxxxxxx> wrote in
>> news:MPG.1d6ebd2091d6b8c8989c57@xxxxxxxxxxxxxxxxxxxxxxxxxxx:
>>
>> > In article <Xns96B692EFF1FF6bobarcabca@xxxxxxxxxxxxx>,
>> > bob@xxxxxxxxxxxxxxxxxxx says...
>> >> PS I want to slap you upside the head! While there are often other
>> >> ways to prevent attacks why not fix the problem? What happens if
>> >> your firewall fails or you misconfigure it?
>> >
>> > Are you serious? If the firewall fails you don't have any internet
>> > access in most cases. If you misconfigure it, most times you're still
>> > not exposed enough to cause a problem. Many people test their
>> > firewalls against intrusion, so it's easy to tell if one is
>> > "misconfigured" if the admin cares.
>>
>> Yes I'm serious. Firewalls have bugs too! The original poster is
>> relying ENTIRELY on his firewall (a software one at that) to protect
>> him. Why not apply the patches and get the additional level of
>> security? I can understand waiting a while or doing some testing
>> beforehand but there is no good reason not to apply critical patches.
>
> I think you will find that there have been many cases where a Patch has
> cause a custom application to fail or some cheap hardware device to fail
> or where a combination of apps/devices have failed due to service packs
> or updates.
>
> Do you remember when Sp2 came out for XP? Many systems ran fine on SP1
> and didn't need SP2 to keep working, many things were impacted by SP2
> changes, and those same systems running Sp1 were just as safe without
> SP2 in a properly secured network.
>
> I'm not advocating not installing SP's and critical updates, but
> critical is relative, so consider how updates that are untested could
> impact others and not just yourself.

As I mentioned in another post on this subject I do user support for over
600 people in a research environment with diverse hardware and software and
haven't had any serious issues with critical patches from Microsoft since
the days of Windows NT.

It is interesting that most issues we have had with Microsoft updates
occurred on laptops with ZoneAlarm. After certain updates ZoneAlarm will not
let lsass.exe or services.exe through (new versions installed as part of the
update). Easy fix is to remove the machine from the network during the
reboot and ZoneAlarm will then ask wether or not to allow these applications
through.
.



Relevant Pages

  • Re: Worth the Upgrade to SP2?
    ... > Adaware SE with all updates installed. ... > Is there another reason for me to upgrade to SP2? ... You mean your mention of AntiSpyware and your use of a third party firewall ... The Add-On Manager in Internet Explorer could help you get ...
    (microsoft.public.windowsxp.configuration_manage)
  • Re: Worth the Upgrade to SP2?
    ... Alarm Pro, SpyBot Search & Destroy, Spyware Blaster, CW Shredder, and Adaware SE with all updates installed. ... Is there another reason for me to upgrade to SP2? ... You mean your mention of AntiSpyware and your use of a third party firewall and a comparison with what you do now and what you will do after you patch with SP2... ... The Add-On Manager in Internet Explorer could help you get rid of some of the parasites you collect.. ...
    (microsoft.public.windowsxp.configuration_manage)
  • Re: Unwise as ever.
    ... However I only run one firewall. ... XP Home SP2 ... > all updates from day 1. ... > XP Home SP2 ...
    (microsoft.public.windowsxp.security_admin)
  • Re: SP2 breaks antivirus software
    ... Poking holes in the firewall automatically is no good... ... You mentioned that you have laptops set up to download updates ... You can prevent Automatic Updates from downloading SP2 using ... > Getting all of these folks in so we can install SP2, ...
    (microsoft.public.windowsxp.general)
  • Re: Windows explorer crashes becaue of long filenames?
    ... It's a fresh install on a reformatted harddrive. ... The idea is to have SP2 and its firewall in place before you ... then it's OK if they all fail at once. ...
    (microsoft.public.windowsxp.general)