Essential Eight Series Part 4: Restricting Administrative Privileges – Limiting the Blast Radius

Restricting administrative privileges is a core control within the Essential Eight because privilege escalation is a common step in many attacks. Once attackers gain access to a single system, elevated privileges allow them to move laterally, access sensitive data and disable security controls. This article explores how controlling administrative access reduces the impact of compromise.

Read More
Essential Eight Series Part 3: Patch Management and Operational Reality

Within the Essential Eight, patching applications and operating systems plays a key role in reducing exposure to known vulnerabilities. In practice, organisations must balance vulnerability remediation with operational stability. This article examines the real challenges of patch management, including vulnerability overload, automation risk and the role of compensating controls.

Read More
Tom Allan