官术网_书友最值得收藏!

2
Using Vulnerability Trends to Reduce Risk and Costs

Vulnerabilities represent risk and expense to all organizations. Vendors who are serious about reducing both risk and costs for their customers focus on reducing the number of vulnerabilities in their products and work on ways to make it hard and expensive for attackers to exploit their customers, thereby driving down attackers' return on investment. Identifying the vendors and the products that have been successful in doing this can be time-consuming and difficult.

In this chapter, I will provide you with valuable background information and an in-depth analysis of how some of the industry's leaders have managed vulnerabilities in their products over the last two decades, focusing on operating systems and web browsers. I introduce a vulnerability improvement framework that can help you to identify vendors and products that have been reducing risks and costs for their customers. This data and analysis can inform your vulnerability management strategy.

Throughout this chapter, we'll cover the following topics:

  • A primer on vulnerability management
  • Introducing a vulnerability management improvement framework
  • Examining vulnerability disclosure trends for select vendors, operating systems, and web browsers
  • Guidance on vulnerability management programs

Let's begin by looking at what vulnerability management is.

主站蜘蛛池模板: 勐海县| 浮梁县| 长白| 谢通门县| 雅安市| 庐江县| 务川| 井冈山市| 邹平县| 蓝田县| 芜湖市| 山西省| 元朗区| 寿宁县| 安多县| 南阳市| 伊宁市| 上杭县| 丽水市| 抚宁县| 龙陵县| 江陵县| 剑河县| 长阳| 黎平县| 宣威市| 德阳市| 九龙县| 乐亭县| 科技| 合阳县| 鹤庆县| 武城县| 城市| 宜昌市| 红桥区| 菏泽市| 包头市| 嘉祥县| 丹棱县| 潞西市|