Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

i would expect in a corporate environment, users aren't downloading and installing software


In my personal experience, you would be incorrect in that expectation.


In a perfect world yes and any good IT department will lock down systems appropriately. But every sufficiently sized org, and many small ones will have shadow IT. There is also the issue of much of the ware pushed through these channels actively tries to circumvent controls. Its not uncommon to find hapless users with adware on their system that managed to get around UAC and group policy. You can always lock down more but security has to be balanced with productivity and user education will always be an important part.


depends on the corporate environment and the users.

As a developer in a corporate environment? I'm always downloading, installing, etc...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: