Priorities: Patching and Mitigating

I’ve been busy contacting customers and partners of Cymmetria to tell them about three new honeypots for Oracle and Cisco vulnerabilities.

One of the discussion topics surrounding this release is what priority to put on rolling out patches rapidly versus mitigating the risk of a successful exploit.

Factors that come up in discussions:

  • can I patch quickly? Some systems may stop working or be compromised if patched. It takes time to test patches in the lab, staging, and then roll out into production.
  • have I got the resources to run decoys, honeypots etc?
  • have I got the necessary incident response capabilities if an attack is found?

If you have the platform and procedures in place to rapidly roll out decoys and detection you could buy some time to roll out your updates.

Worth thinking about?


Peter Glock
Over 30 years of designing, building and managing telecoms and IT services. Primarily working with large enterprise and professional services businesses in Asia, North America, continental Europe and the UK. Information security professional, secret physics nerd.

