<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Twelve Word Tuesday: Conficker and Neeris Expose Lack of Due Diligence</title>
	<atom:link href="http://blogs.gartner.com/john_pescatore/2009/05/26/twelve-word-tuesday-conficker-and-neeris-expose-lack-of-due-diligence/feed/" rel="self" type="application/rss+xml" />
	<link>http://blogs.gartner.com/john_pescatore/2009/05/26/twelve-word-tuesday-conficker-and-neeris-expose-lack-of-due-diligence/</link>
	<description>A member of the Gartner Blog Network</description>
	<lastBuildDate>Sat, 04 Feb 2012 17:10:54 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.4</generator>
	<item>
		<title>By: John Pescatore</title>
		<link>http://blogs.gartner.com/john_pescatore/2009/05/26/twelve-word-tuesday-conficker-and-neeris-expose-lack-of-due-diligence/comment-page-1/#comment-1070</link>
		<dc:creator>John Pescatore</dc:creator>
		<pubDate>Wed, 27 May 2009 11:30:00 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gartner.com/john_pescatore/?p=564#comment-1070</guid>
		<description>Even in the consumer market, I think we are long beyond the point where anyone using a Windows PC doesn&#039;t know *before* they buy it that they need to turn AutoUpdate on and have patches pulled down automatically.

In the enterprise area, we are long beyond being long beyond on patching as just part of the cost of ownership of a Windows PC or server - about 8 years beyond that. Even for OSs that haven&#039;t been attacked as much or had as many vulnerabilities - really not news that you have to patch or you have problems.

Just as when you buy a car you know you have to change the oil every 3,000 miles - when you buy a computer you know you have to patch it once a month. Change your home air filters; rotate your tires; brush your teeth - all of these are just accepted normal costs of doing business, same with patching. 

On PCs it isn&#039;t even hard. On servers, it takes more work - shielding approaches may be sufficient for many, just as I can decide to change my oil every 10,000 miles and take my chances.</description>
		<content:encoded><![CDATA[<p>Even in the consumer market, I think we are long beyond the point where anyone using a Windows PC doesn&#8217;t know *before* they buy it that they need to turn AutoUpdate on and have patches pulled down automatically.</p>
<p>In the enterprise area, we are long beyond being long beyond on patching as just part of the cost of ownership of a Windows PC or server &#8211; about 8 years beyond that. Even for OSs that haven&#8217;t been attacked as much or had as many vulnerabilities &#8211; really not news that you have to patch or you have problems.</p>
<p>Just as when you buy a car you know you have to change the oil every 3,000 miles &#8211; when you buy a computer you know you have to patch it once a month. Change your home air filters; rotate your tires; brush your teeth &#8211; all of these are just accepted normal costs of doing business, same with patching. </p>
<p>On PCs it isn&#8217;t even hard. On servers, it takes more work &#8211; shielding approaches may be sufficient for many, just as I can decide to change my oil every 10,000 miles and take my chances.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rob Lewis</title>
		<link>http://blogs.gartner.com/john_pescatore/2009/05/26/twelve-word-tuesday-conficker-and-neeris-expose-lack-of-due-diligence/comment-page-1/#comment-1068</link>
		<dc:creator>Rob Lewis</dc:creator>
		<pubDate>Tue, 26 May 2009 23:55:13 +0000</pubDate>
		<guid isPermaLink="false">http://blogs.gartner.com/john_pescatore/?p=564#comment-1068</guid>
		<description>Is this blaming the victim?

Perhaps malware exposes real consumer expectations; purchasers may not realize that there is much work and expense to provide due diligence on their windows systems. Others may refuse and some folks are just unable to do so.

Would the outcome be different if there was a warning label on the box that said that approximately n% of the rest of your life will be occupied protecting this system, after one installs it and as long as it in use?</description>
		<content:encoded><![CDATA[<p>Is this blaming the victim?</p>
<p>Perhaps malware exposes real consumer expectations; purchasers may not realize that there is much work and expense to provide due diligence on their windows systems. Others may refuse and some folks are just unable to do so.</p>
<p>Would the outcome be different if there was a warning label on the box that said that approximately n% of the rest of your life will be occupied protecting this system, after one installs it and as long as it in use?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

