You are here: silicon.com > Software > Security Strategy

Security Strategy

Microsoft promises better security by 2006

Software undergoing tough testing...

Tags: ed gibson, security, microsoft

By Dan Ilett

Published: 9 September 2005 12:15 GMT

Microsoft has pledged to improve security testing on its products by next year.

Speaking at the Information Systems Security Association conference in London on Thursday, Ed Gibson, chief security advisor for Microsoft UK, said the company's products are undergoing tougher testing than ever before but customers would not see the results until next year.

Gibson said: "The whole concept of trustworthy computing is taking a different approach. The lifecycle from origin to the product hitting the shelf is going through security testing like no other product that's gone out. But that's not where we're at yet.

"Microsoft is dealing with it. We're going through the lifecycle but we won't see the products through this until 2006."

Gibson, a former FBI agent recently appointed by the software giant, said there would always be a need for 'critical updates' - formally referred to as patches by Microsoft. "When a critical update is released, there are people out there intent on compromising every product. As soon as the update goes out there is something else to follow it. I ask you, will there ever be a time when we don't have to do updates?"

Microsoft currently issues patches on a monthly basis. From April to August this year, vulnerability monitoring firm Secunia has warned of 21 flaws in Windows XP Professional, 24 per cent of which are, according to Secunia, still unpatched by Microsoft.

Gibson said the 'exploit and update' cycle is not unique to Microsoft.

"It's for every product and an industry issue," he said. "[Exploits] are written by organised crime for extorting money. I don't know how you deal with that in an open source world. Worms and viruses don't start by themselves and we know there have to be more viruses for spammers to operate."

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead

Stephen Kleynhans Mind the details with Windows 7 Just because it might work better than Vista, it doesn't mean you can be sloppy


  • Jobs
Senior Security Testing Consultant - CHECK / CREST

This is an excellent opportunity for Senior Security Consultants / Penetration Testers with Crest or CHECK certification to join the penetration ...

Technical Support Account Manager - Amsterdam

Serve as an advocate on behalf of customers for issues requiring code fixes, patches or feature requests.Follow all documented processes to ensure ...

Mainframe zSeries Specialist

Planning and application of system software patches to fix problems. Knowledge of concept of z9 system and z/OS (MVS, JES, Storage, Security, Data ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: