Chapter 7. Active Directory's Role in Domain Security

“Sixty-five percent of attacks exploit misconfigured systems, and only 30% exploit known vulnerabilities where there's a patch out. Only 5% exploit things we didn't know where there was a problem. Address the 65% and check that things are configured right, and you've just eliminated two-thirds of your problem. Focus on patch management and forcing software vendors to write better software, and you've got the other 30% taken care of. Then, later on, worry about the 5% of evil geniuses who are attacking us with zero-day attacks.”

—Gartner Vice President John Pescatore in an interview with Search Windows2000.com's Michael S. Mimoso, June 9, 2003, http://searchsecurity.techtarget.com/qna/0,289202,sid14_gci905234,00.html ...

Get Windows Server 2003 Security: A Technical Reference now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.