Intelligent CISO Issue 02 | Page 34

To keep track of these incompatibilities Microsoft added a new compatibility registry key that must be set by an anti-virus vendor in order for Windows Update to continue functioning . anti-virus vendor in order for Windows Update to continue functioning .
PREDICTIVE INTELLIGENCE

To keep track of these incompatibilities Microsoft added a new compatibility registry key that must be set by an anti-virus vendor in order for Windows Update to continue functioning . anti-virus vendor in order for Windows Update to continue functioning .

The goal is for the anti-virus vendor to state they are compatible with the Spectre and Meltdown security updates and , by setting this flag , they will accept these patches and allow future patches to provide compatibility .
If the anti-virus vendor does not set the flag as a part of the update , then they have not proven co-existence and Windows Update stops working . You will not receive any more updates .
So here is the rub . If you are running an older anti-virus solution and have not updated it in a while or have a vendor
If the anti-virus vendor does not set the flag as a part of the update , then they have not proven co-existence and Windows Update stops working
that has still not proven compatibility and set the appropriate registry flag , you are not getting updates .
You are stuck and thus vulnerable to any new exploits and cannot receive patches until they update the solution and you deploy the update everywhere .
This means you may have missed the January patch update cycle and may miss February as well , since your antivirus vendor is not compatible yet .
You may be forced to even upgrade your anti-virus licence or change vendors if these delays last too long in order to maintain proper security and even regulatory compliance .
34 Issue 02 | www . intelligentciso . com