|
|
|
|
|
by Dalewyn
1077 days ago
|
|
Which is why the first thing I do on any Windows install is disable or block automatic Windows Updates and only run them once every blue moon when I've set aside time to waste on borkage. And before anyone says I'm in danger by running unpatched Windows: NO. My threat model is such that the time lost and wasted from updates breaking shit is significantly greater than the dangers posed by hypothetical threats those patches ostensibly guard against. Updates are simply and literally not worth my time and concern compared to having systems that just work every day all year long. If I need to comply with regulations or audits or I am the target of focused attacks, then yes the scales shift the other way. But as a general, and particularly personal, concern? No, updates are a waste of my time. Linux is even worse because I don't even need to run updates for something to break and waste my time. |
|
>If I need to comply with regulations or audits I hope you are not handling any customer info on such systems... or are you?!
There seems to be a deeper issue at play. I've seen it many times, even here on HN. So very few people actually know anything about information security, and if they do they only have horrifying misconceptions from god knows where. No wonder why there's so many data leaks when the responsible people have these attitudes.