• A deluge of vulnerabilities for April

    Home » Forums » Newsletter and Homepage topics » A deluge of vulnerabilities for April

    • This topic has 4 replies, 5 voices, and was last updated 1 year ago.
    Author
    Topic
    #2659784

    PATCH WATCH By Susan Bradley It’s raining CVEs. There are definitely going to be two groups of patchers this month. One will say, “Issues? What issues
    [See the full post at: A deluge of vulnerabilities for April]

    Susan Bradley Patch Lady/Prudent patcher

    7 users thanked author for this post.
    Viewing 3 reply threads
    Author
    Replies
    • #2659966

      Thanks Susan.

      I’ve found the simplest (and for the feint of heart the safest) way of handling KB5034441  is to allow one attempt at installing it along with the other updates, and then, when everything else is completed but that one has failed, to renew the Pause on updates for another 35 days. No point attempting a retry. That leaves it for another month.

    • #2659969
    • #2659973

      Thanks Susan for your always informative article.  I read it through this morning and you mentioned that for consumers there would be two camps – one with BitLocker, and one without.  However, I only seemed to be reading about what happens when/if one has Bitlocker, and to make sure one stores one’s keys in an MS account.  I didn’t see much in the way of what is recommended for consumers without Bitlocker (apart from the usual: have a good backup, delay until the end of month, etc.).  Did I miss something important, perchance?  Many thanks!

    • #2660007

      Re. BitLocker in domains:

      1. Copy the BitLocker keys for the domain controller to an encrypted Excel spreadsheet. Keep a copy of that spreadsheet in a NAS backup and in a cloud backup. Send a copy to your brother in Chicago. Optionally save to a USB thumb drive in your office safe.
      2. Turn on the feature to store desktop BitLocker keys in Active Directory:
        https://4sysops.com/archives/store-and-retrieve-bitlocker-recovery-keys-from-active-directory/
        https://www.mcbsys.com/blog/2014/09/save-bitlocker-keys-in-active-directory/

      It’s a stress-reliever to not have to worry about the keys for every desktop.

    Viewing 3 reply threads
    Reply To: A deluge of vulnerabilities for April

    You can use BBCodes to format your content.
    Your account can't use all available BBCodes, they will be stripped before saving.

    Your information: