Implementing capabilities to pause/unpause a system in extreme scenarios may reduce impact due to initial vulnerabilities or exploits. (See here)
- Guarded Launch Circuit Breaker
- Emergency -> Pause
- Recover -> Unpause
- First -> Pause/Unpause
- Later -> No Circuit Breaker
- Risk Mitigation
- Initially Pause/Unpause