Loading video...
Video Failed to Load
When we created BOD 26-04, we adjusted vulnerability remediation to cyber relevant timeframes, requiring high-risk vulnerabilities to be patched within three days. See how BOD 26-04 can help your organization patch smarter, not harder:
11,041 views • 1 day ago •via X (Twitter)
4 Comments

three days is tight enough that the bottleneck moves from patching to validating the patch first. skip testing, risk a bad rollout. skip the deadline, you are noncompliant. the SLA quietly rewards whoever already automated regression checks, not whoever patches fastest.

Cyber security, my asshole! You people are a fucking joke! You are literally letting an Asian charlatan named Dan Lok creep around all over the fucking Internet embedded in different websites doing the most foul things to innocent US citizens

Wah keren

Cyber-relevant patch windows only work when someone owns the clock on systems you control. Name who remediates high-risk findings on gear you own or may test with written permission. Keep a live practice out of the triage window.


