How are you handling the recent Defender CVE issue?

0
1
Asked By CuriousCat92 On

I'm curious about how everyone using Microsoft Defender is dealing with the recent CVE vulnerabilities. Specifically, I've heard that some organizations have opted to remove Defender entirely. Has anyone else taken similar steps, and what strategies are you employing to manage the situation?

5 Answers

Answered By DefenderDisinterested On

Honestly, we don’t even use Defender, so it hasn’t affected us at all. But if I were in your shoes, I’d be pretty frustrated with Microsoft for handling it this way! They really dropped the ball creating this zero-day issue.

AnnoyedAdmin77 -

I can't believe if that's what really happened—so messed up!

Answered By JovialJoe84 On

I’d say just patch it. What’s the big deal? Am I missing something here?

TechWhiz101 -

There are two unpatched CVEs: RedSun and Undefend, which are sitting at a severity of 7.8.

Answered By ChillVibes23 On

Our team disabled Defender. I wonder what alternative vendors folks are considering?

SecuritySleuth99 -

I’ve heard that CrowdStrike is pretty reliable, but you never know!

Answered By SkepticalSysAdmin On

By definition, it can’t be exploited without Defender triggering an incident. But tell me you're responding to these incidents, right?

SecuritySavvy101 -

It seems the exploit could trick Defender into thinking a safe file is vulnerable and potentially allow escalation.

Answered By EasygoingEve On

Nothing much for me. Ignoring it helps me sleep better at night.

Related Questions

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.