Welcome to Universe of Wrestling Forums! Established in 2006!

Universe of Wrestling's 20th anniversary is next year and many changes are coming.
Universe of Wrestling is going through a transitional phase right now in 2025.

To become a UOW member, please *Click Here* to register. Quick and easy.

Benefits of becoming a member include:
- You lose this welcome at the top of the screen every page.
- You can do a lot more on forums than social media sites.
- Chat in real time, in our chat box.
- See what members are online.
- Friendly members and staff.
- More benefits coming soon.


Due to the transitional phase, if you get any type of Error Page.
Just refresh the page or click the browser back button or load UOW again.
We apologize for any trouble you may have on the forum during this time.

If you have any questions or need help, please message us on our Facebook page. Click below.
https://www.facebook.com/UniverseOfWrestling/

Results 1 to 2 of 2
  1. #1
    'The Fallen Angel' OMEN's Avatar
    Join Date
    Dec 2005
    Location
    Area 51
    Posts
    19,396
    Rep Power
    416

    Default Microsoft patch rate surged in second half of 2008

    More security updates, more flaws fixed in each update, company report says
    Microsoft Corp. was forced to pick up the patching pace in the second half of 2008, the company admitted today, as it fixed 67% more flaws and released 17% more security updates in the period than it had in the first six months of the year.

    Included in the bugs patched during the latter months of the year was the vulnerability exploited by Conficker, a worm that led to the biggest infection outbreak in years and a minor media frenzy last week.

    Microsoft patched 97 different vulnerabilities in 42 separate security updates in the second half of 2008, compared to 58 vulnerabilities in 36 updates in the first half.

    Vinnie Gullotto, general manager of the Microsoft Malware Protection Center, acknowledged the increase. "The number [of patched vulnerabilities] did go up, but a lot has to do with our methodology."

    Microsoft's Security Intelligence Report explained it differently. "Although the total number of security bulletins in [the second half of 2008] was on par with the last several periods, there was a significant increase in the number of CVE identifiers addressed per security bulletin in [the second half of 2008]," the report stated. The average number of Common Vulnerability and Exposure identifiers rose from an average of 1.6 per security bulletin in the first half of 2008 to 2.3 in the final six months.

    In plain English, that means Microsoft packed more individual patches into the average security update.

    During the second half of 2008, Microsoft issued several multipatch updates, including MS08-052, a five-patch update for the GDI+ component of Windows; MS08-058, a six-patch update for Internet Explorer; MS08-072, an eight-patch fix for Microsoft Word; and MS08-073, a four-patch update for IE.

    Gullotto argued that the number of bugs Microsoft quashed was less important than the number of exploits actually crafted for, and released into the wild against, those vulnerabilities.

    "The number of exploits against those [bugs] stayed about the same as in the first half of the year," he said. The report did not include a complete tally of all exploits aimed at Microsoft software during the last six months of the year, though it included some data related to browser and document file format bugs.

    Conficker, the most prolific worm in several years, got its start last year when it began to exploit unpatched Windows machines just weeks after Microsoft issued one of its two emergency updates for the period. "Fortunately, Conficker was a rarity," said Gullotto, referring to the scarcity of worms that attack the operating system and self-propagate quickly through networks.

    The other "out-of-band" update was released in mid-December to plug a critical hole in IE that had already been exploited by criminals.

    Even as Gullotto admitted that Microsoft had to patch more bugs as 2008 proceeded, he defended the company's track record. "We're clearly seeing the results of the progress we've made in software development," he said, pointing out that the company's newer software is more secure than older code. According to data gathered from the Malicious Software Removal Tool, the anti-malware utility Microsoft updates and redistributes each month to Windows machines, the real-world infection rate of PCs running Windows Vista Service Pack 1 is 61% less than that of systems powered by Windows XP SP3.

    "Older versions typically do have more vulnerabilities, that's true," he said, "but one of the good things is that we're being transparent about it, we're telling people about the vulnerabilities."

    Micrsosoft's new security report, labeled as "Volume 6," is available for download as a PDF file from the company's Web site.

    Compworld
    'Without Order Nothing Can Exist - Without Chaos Nothing Can Grow'

  2. #2
    Main Eventer
    Join Date
    Jun 2007
    Posts
    40,726
    Rep Power
    741

    Default

    Interesting read, thanks for posting.
    .

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •