Every piece of installed software introduces a potential attack vector, making it essential to minimize unnecessary applications on any system. Reducing software exposure is a foundational step in hardening a machine against vulnerabilities.
Minimizing Software Attack Vectors
For each piece of software that's installed on our computer, we open up another attack vector. We need to minimize how many attack vectors there are, and therefore we need to minimize how much software we have running on a computer.
Software is constantly being patched and updated for vulnerabilities. Let's imagine we have a vulnerable piece of software that's installed on this computer. That could open up other software to some sort of attack, or the whole computer to attack, if there is a vulnerability. So having just one piece of software can really expose the whole machine.
What we want to do is remove the possibility, or mitigate and lower the risk of this possibility, by not having unnecessary software.
What I've found is that a lot of machines, when you purchase them, will come with a lot of extra software that's unnecessary. So one of the things that I do, rather than trying to remove those, is I'll just actually wipe out the whole machine. I will reimage the machine or set up a new operating system on it. So I delete all the old stuff and reinstall the operating system.
TechKnowSurge builds IT and cybersecurity professionals through hands-on, concept-first training built around real understanding — not memorization. Free interactive tools, structured programs, and 25+ years of real-world experience, all in one place.
Explore free tools and programs →