This preview shows pages 1–3. Sign up to view the full content.
This preview has intentionally blurred sections. Sign up to view the full version.View Full Document
Unformatted text preview: Secunia Half Year Report 2010 Letter from the CEO - An Alarming Trend for End-Users I would like to welcome you to the frst release oF the Secunia HalF Year Report. In this report we look at the evolution oF the security threat posed by vulnerabilities over the last fve years, and provide an outlook For 2010 based on the data oF the frst six months oF this year. The overall conclusion is that despite considerable security investments, the soFtware industry at large still proves unable to produce soFtware with substantially less vulnerabilities, highlighting the continued need For Vulnerability Intelligence and Patch Management. urther, the report shows an alarming development in 3rd party program vulnerabilities, representing an increasing threat to both users and business, which, however, continues to be greatly ignored. This trend is supported by the Fact that users and businesses still perceive the operating system and MicrosoFt products to be the primary attack vector, largely ignoring 3rd party programs, and fnding the actions to secure these too complex and time-consuming. Ultimately this leads to incomplete patch levels oF the 3rd party programs, representing rewarding and eFFective targets For criminals. Key highlights oF the Secunia HalF Year Report 2010: Since 2005, no signifcant up-, or downward trend in the total number oF vulnerabilities in the more than 29,000 products covered by Secunia Vulnerability Intelligence was observed. A group oF ten vendors, including MicrosoFt, Apple, Oracle, IBM, Adobe, and Cisco, account on average For 38 percent oF all vulnerabilities disclosed per year. In the two years From 2007 to 2009, the number oF vulnerabilities aFFecting a typical end-user PC almost doubled From 220 to 420, and based on the data oF the frst six months oF 2010, the number is expected to almost double again in 2010 to 760. During the frst six months oF 2010, 380 vulnerabilities or 89% oF the fgures For all oF 2009 has already been reached. A typical end-user PC with 50 programs installed had 3.5 times more vulnerabilities in the 24 3rd party programs installed than in the 26 MicrosoFt programs installed. It is expected that this ratio will increase to 4.4 in 2010. In order to aid in the development oF Further protection mechanisms against the vulnerability threat, Secunia is currently testing a technology, which can update a broad variety oF programs From a number oF diFFerent vendors. This technology will be incorporated into the Secunia Personal SoFtware Inspector (PSI) 2.0, which is currently undergoing a technology preview, and it is our intention that Secunia PSI with Auto Updating will signifcantly improve the security oF home users PCs....
View Full Document
This note was uploaded on 11/17/2010 for the course ABORKER jong hyuk taught by Professor Mr.steve during the Spring '10 term at UAA.
- Spring '10