// THREAT DETECTION AND DATA PRIVACY TERM

Patch

A patch is a small piece of software code designed to fix bugs, improve features, or, most critically, address security vulnerabilities in an existing program or operating system. Applying patches helps protect systems from known exploits.

Patch — illustration from Wikipedia
Image via Wikipedia

TECHNICAL DEFINITION

In cybersecurity, a patch is a software update released by a vendor to remediate identified vulnerabilities, known bugs, or enhance system functionality, thereby reducing the attack surface and mitigating potential exploitation by threat actors or malware.

BACKGROUND

Computer security is a subdiscipline within the field of information security. It focuses on protecting computer software, systems, and networks from threats that can lead to unauthorized information disclosure, theft, or damage to hardware, software, or data, as well as to the disruption or misdirection of the services they provide.

READ MORE ON WIKIPEDIA

SYNONYMS & ALIASES

  • Hotfix
  • Update
  • Security Fix
  • Bug Fix
  • Service Pack
  • Software Update
  • Remediation

USAGE NOTE

Patches are regularly applied as part of vulnerability management and incident response to address newly discovered security flaws or as post-incident remediation.

DEVELOPERS

Organizations developing technology related to Patch.

  • Microsoft

    Develops and distributes critical security patches and updates for its vast array of operating systems, applications, and cloud services, playing a foundational role in global cybersecurity.

  • Red Hat

    Develops and provides security patches and updates for its enterprise-grade Linux distributions and open-source software, essential for maintaining secure server environments in defense and enterprise.

  • Tanium

    Develops endpoint management and security platforms that include advanced patch management capabilities, enabling organizations to rapidly identify, deploy, and verify security patches across large, complex networks.

  • Ivanti

    Develops unified IT management and security software, with a strong focus on automated patch management solutions that help organizations discover, assess, and deploy security patches across various endpoints and applications.

  • Qualys

    Develops a cloud-based security and compliance platform that includes vulnerability management technology, which identifies missing patches and provides critical data for prioritizing and managing patch deployment.

  • Tenable

    Develops leading vulnerability management solutions (like Nessus) that identify security flaws and missing patches across IT environments, providing the intelligence needed for effective patch prioritization and remediation.

  • Cisco

    Develops networking hardware, software, and cybersecurity solutions, regularly releasing security patches and updates to protect its products and the critical infrastructure they support from evolving threats.

RELATED TERMS IN INCIDENT RESPONSE