Are Software Updates Useless Against Advanced Persistent Threats?

06/12/2023
by   Fabio Massacci, et al.
0

A dilemma worth Shakespeare's Hamlet is increasingly haunting companies and security researchers: “to update or not to update, this is the question“. From the perspective of recommended common practices by software vendors the answer is unambiguous: you should keep your software up-to-date. But is common sense always good sense? We argue it is not.

READ FULL TEXT

page 4

page 5

research
05/16/2022

Software Updates Strategies: a Quantitative Evaluation against Advanced Persistent Threats

Software updates reduce the opportunity for exploitation. However, since...
research
07/17/2020

Security, Availability, and Multiple Information Sources: Exploring Update Behavior of System Administrators

Experts agree that keeping systems up to date is a powerful security mea...
research
01/30/2022

Making Secure Software Insecure without Changing Its Code: The Possibilities and Impacts of Attacks on the DevOps Pipeline

Companies are misled into thinking they solve their security issues by u...
research
09/20/2022

Toward Identification and Characterization of IoT Software Update Practices

Software update systems are critical for ensuring systems remain free of...
research
01/24/2023

MLinter: Learning Coding Practices from Examples-Dream or Reality?

Coding practices are increasingly used by software companies. Their use ...
research
06/16/2020

An STPA-based Approach for Systematic Security Analysis of In-vehicle Diagnostic and Software Update Systems

The in-vehicle diagnostic and software update system, which supports rem...
research
05/11/2018

Quantifying Users' Beliefs about Software Updates

Software updates are critical to the performance, compatibility, and sec...

Please sign up or login with your details

Forgot password? Click here to reset