You are here: silicon.com > Software > Security Strategy

Security Strategy

Microsoft's brotherhood of silence

So much as squeak about security issues and you'll get what's coming to yer...

By Pia Heikkila

Published: 19 October 2001 14:20 BST

Security professionals have hit back at Microsoft following the software giant's call to the IT community to take a vow of silence over hack attacks and other security issues.

Microsoft recently published an essay, on its TechNet support site, entitled The end to Information anarchy, which condemned security professionals for openly discussing hacker exploits. The paper, written by Scott Culp, manager of the Microsoft response centre, urges the community to be more cautious when discussing the vulnerabilities.

"It's high-time the security community stopped providing blueprints for building these weapons," Culp wrote. "And it's high-time computer users insisted that the security community live-up to its obligation to protect them.

"The relationship between information anarchy and the recent spate of worms is undeniable. Every one of these worms exploited vulnerabilities for which step by step exploit instructions had been widely published and using the same techniques as were published."

But Microsoft's views have outraged the security community, which is calling for an end to the finger pointing culture.

Andy Strong, VP of global IT security at investment bank Dresdner Kleinwort Wasserstein, said: "Microsoft's aim to generate general discussion has completely backfired. They are obviously looking for someone to blame, which has deeply upset the security community. Security professionals look for support from software vendors, not naming and shaming," he said.

Jean-Luc Giaud, security consultant at smart card maker Gemplus, said: "Users are concerned about security and it would be best if everyone tried to help one another to fight against the culprits rather than digging for scapegoats," he said.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

  • Jobs
Service Support Manager (ITIL) - Manchester

The University will actively foster a culture of inclusion and diversity and will seek to achieve true equality of opportunity for all members of its ...

Solutions Architect - OpenLink Endur-00051852

Conversant with Service Oriented Architecture, Java, .Net and Oracle Demonstrated ability to drive business requirements definition to a level of ...

Quantitative Energy Analysts

You will also have the opportunity to contribute to the regular reports published by the company on the industry, which are purchased and utilised ...

CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.





Quick Sitemap Links: