You are here: silicon.com > Software > Malware

Malware

Security flaws sink software vendors' stock

Though Microsoft is hurt the least...

Tags: stock price, mirosoft, vulnerability, security flaw

By Ingrid Marson

Published: 10 June 2005 07:00 GMT

The share price of software companies drops noticeably when security flaws are found in their products, according a recent study.

Researchers from Carnegie Mellon University in Pennsylvania found that a vendor's share price falls by an average of 0.63 per cent on the day a vulnerability is announced.

The results of the study, which tracked 146 vulnerability disclosures for 18 publicly traded software companies, were presented at last week's Workshop on the Economics of Information Security at Harvard University in Cambridge, Massachusetts.

Microsoft is less affected by this trend than other software vendors, though. Security vulnerabilities cause Redmond only a 0.28 per cent reduction in share price, compared with an average drop of 0.91 per cent for all other companies.

The report suggests investors may treat Microsoft differently because its products are widely used and therefore security vulnerabilities are a less reliable indicator of software quality than with other products. Alternatively, investors may be less surprised by security holes in Microsoft products, given their frequency and the way malicious hackers have historically targeted the company's software.

The research was conducted by Rahul Telang, assistant professor of information systems at Carnegie Mellon University, and Sunil Wattal, a research student at the same university.

Ingrid Marson writes for ZDNet UK

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead

Stephen Kleynhans Mind the details with Windows 7 Just because it might work better than Vista, it doesn't mean you can be sloppy


  • Jobs
Security Consultants - Penetration Testing / Vulnerability Assessment

URGENT - PEN TESTER - WEB APPS (HOMEBASED / REMOTE) to start THIS MONDAY; Dureation 1 WEEK + EXTENSION (Cica 20 days) for an urgent security pen ...

IT Security Analyst - ISO27001 / PCI DSS / APACS / SOX

Be able to assess internal and external scan reports--identify false positives, research vulnerabilities, communicate results to IP management and ...

Penetration Tester / Check Team Member / Team Leader

Able to identify vulnerabilities and recommend remediation. Able to utilise a range of network security testing tools and exploits to identify ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: