Maybe one of the best ways for businesses to not run into security trouble with essential infrastructure is to not use Microsoft products, for the simple reason they’re the most attractive target. True or false?

Mar 13, 2021 · 9:53 PM UTC

14
1
21
Replying to @stilkov
I think if one is using successful public SaaS, the attack surface is always big. One mitigation of the exchange issue, is the use of encrypted emails + good and tested backup/restore plans. And perform updates ASAP. As always: expect failures and be prepared to handle them.
1
1
True. I was actually not thinking about SaaS offerings, though
1
Replying to @stilkov
I would think WordPress is. Beside click attachments in mail.
Replying to @stilkov
The only 100% secure firewall is the cable cutter, to paraphrase Marcus J Ranum.
2
Replying to @stilkov
Not using MS may be smart. But what’s the replacement? Hopefully something that is well maintained and battle-tested. Security by obscurity is by itself not a valid strategy.
3
Replying to @stilkov
I always figured Smalltalk on an AS/400 would be pretty safe.
1
5
Replying to @stilkov
It depends - many products from MS have been proven to have security wholes - for cloud ones I have not heard yes - so Azure - may be?
Replying to @stilkov
Obviously true, because one of the prefered ways of robbers to come into any house is through the windows.
Replying to @stilkov
Every single famous products will be a target. There is no 100% security for all things, Goog Apple MS IBM etc. The more users you have the more attractive you are for attacks. More important how could we act/react fast. "Self healing" software... Never need to patch again...
1
Replying to @stilkov
But PowerPoint™️.
3