Feb. 7, 2024, 1:57 a.m. | /u/Freemanboy

cybersecurity www.reddit.com

How's everyone handling their Ivanti patches?

We applied the mitigation, they said "that one doesnt work, here's a new one. Also heres some patches for versions you don't have."

Then they said "Even if you show no signs of compromise, act like you're compromised, factory reset your shit, change your passwords, use new certs and then upgrade."

It's hard to brief management and say "The vendor doesn't really know, but it'll be something else they don't know tomorrow."

act change compromise compromised cybersecurity don factory handling ivanti mitigation passwords patches reset work

Information Technology Specialist I, LACERA: Information Security Engineer

@ Los Angeles County Employees Retirement Association (LACERA) | Pasadena, CA

Issues Management & Risk Treatment Sr. Consultant

@ Northern Trust | Tempe, AZ Building 2190

Dir. DDIT ISC Enterprise Architecture AppSec

@ Novartis | Hyderabad (Office)

System Access Management Manager

@ Ingram Micro | CA - Irvine, HQ

Oracle Linux Systems Administrator

@ Leidos | 1662 Intelligence Community Campus - Bethesda MD

Senior Systems Engineer - AWS

@ CACI International Inc | 999 REMOTE