Jump to content

A look back at Microsoft's 2011 security landscape


Recommended Posts

Decrease in Critical Issues and Bulletins

As far as individual issues, Critical-class CVEs accounted for less than a third of the issues we addressed in bulletin releases for the first time since we began our monthly bulletin-release cadence in 2004. And in absolute numbers, Critical-class CVEs are at their lowest levels since 2005. The fact that we're seeing lower percentages of Critical issues and bulletins year-over-year demonstrates progress made by the product groups in creating more secure software.

With this regularly scheduled monthly release, our bulletin count for 2011 is 99, with 13 released today. Of those, we determined 10 to be Important-class bulletins, with only three classified as Critical in severity. In 2011, Critical-class bulletins represented just 32 percent of all bulletins – the lowest percentage since we began our monthly bulletin-release cadence in 2004 and, again, the lowest absolute number since 2005. Interestingly, for the second half of the year the numbers are even lower, with under 20 percent of bulletins released in the last six months rated Critical in severity.

View the full article

Link to comment
Share on other sites

Well Microsoft are now more using .NET which is easier to write more secure code because it uses CIL virtual machine, and C# does automatic garbage collection, etc.

Also Internet Explorer nowadays uses "Protected Mode" which is sandboxing.

I think Microsoft have gotten better at security lately.

Link to comment
Share on other sites

...

I think Microsoft have gotten better at security lately.

I agree -- and that's why there has been a huge rise in malware in the last two years that targets everything else, particularly Adobe Flash, Adobe Reader, and Sun/Oracle Java (a.k.a Java run-time a.k.a Java JRE).

.

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...