Welcome | Sign In
LinuxInsider.com
Security

Microsoft Patches Up Push for Better Security

Print Version
E-Mail Article
Reprints
Microsoft Patches Up Push for Better Security

The final piece of the new initiative will involve planned updates in the first half of 2004 for both Windows XP and Windows Server 2003, which was released just a few months ago.


In a bid to reassure customers rattled by a series of headline-grabbing security flaws, Microsoft (Nasdaq: MSFT) has said it will launch an initiative to make its products more secure.

The push includes another revamp of the company's patch management process, which has been widely criticized as too cumbersome for enterprise users and too confusing for some home users, as well as major upgrades to Windows and Windows Server 2003 designed to make the software harder to hack even without updated patches.

Microsoft president and CEO Steve Ballmer announced the initiative, calling security "a key area of focus for us" while still emphasizing that it is "criminal actions" by hackers and others that cause security breaches.

"Our goal is to enable increased protection and resiliency of systems and networks," Ballmer said. "Our highest priority is developing these safety technologies for our customers."

Industry analyst Rob Enderle told the E-Commerce Times that Microsoft has been forced to redouble its security efforts in an effort to remind industry partners and customers that it continues to move forward with improvements. Company founder Bill Gates announced a sweeping security initiative called Trusted Computing last year, only to have the SQL Slammer and Blaster worms ravage the Internet, using Windows machines as vectors, months later.

"A lot of what they've done has been behind the scenes, so they need to remind people from time to time that they are doing what they can to make their software more secure," Enderle said, adding that Microsoft needs to bridge the gap until next-generation software that it built on a more secure base can be released.

Patch and Go

Ballmer said one key improvement will be a simplification of the way patches are distributed. Microsoft plans to move to a monthly patch release schedule, which he said will make it easier for network administrators to plan updates, which often require system shutdowns before installation.

A recent lawsuit against Microsoft claimed the software maker's patching process was so unwieldy that most end users ignored directives to apply fixes.

Early next year, Microsoft will release a new version of its software update service for Windows SQL Server and other enterprise software platforms. Along with other improvements, the company said, the move will reduce by 30 percent the amount of downtime required to keep current with patches and other updates.

Alex Bakman, CEO of Ecora Software, said Microsoft is far from being the only vendor that faces this patching issue. "It's really everybody's problem," he told the E-Commerce Times.

In part because the company needed to be seen reacting to flaws quickly, Microsoft has at times "flooded people with individual patches," Bakman added. Still, the company's pledge to spend $100 million on improving security is far and away more than any other software maker has done.

A Little Education

Microsoft also said it will start offering free security seminars later this fall and will conduct monthly security online seminars beginning in November. The company also will share more details about how its own network is configured to ensure security, according to Ballmer.

The final piece of the new initiative will involve planned updates in the first half of 2004 for both Windows XP and Windows Server 2003, which was released just a few months ago.

The updates will include new Microsoft technology that makes computers stand up better to attacks, even when patches do not yet exist or have not yet been installed. The protection will guard against several of the most common types of attacks against Microsoft software, Ballmer said. Additional security improvements will be rolled out in late 2004.


Print Version E-Mail Article Reprints More by Keith Regan


Related News Alerts

Microsoft Activate Alert | Search Archives

More by Keith Regan

Yahoo Slaps Fresh Coat of Gloss on Microsoft Deal Defense
June 30, 2008
With its shareholders meeting set to take place in less than five weeks, Yahoo has put together a 32-page presentation, emphasizing why the investors should vote to keep the current board in place. The company also reiterated why it chose to partner with Google instead of letting Microsoft buy part of it.
French Court Stings eBay With $63M Judgment Over Knockoff Sales
June 30, 2008
eBay is planning to appeal a ruling by a French court that ordered it to pay $63 million to the luxury goods maker Louis Vuitton Moet Hennessey. The court also barred the online auctioneer from selling four brands of perfume on its Web sites accessible in France.
New Auto Loan Leads Marketplace Shifts Into Drive
June 30, 2008
Reply.com's move into the auto finance market is a logical one the company, as automotive advertising spending is moving online in increasingly greater amounts. The company is partnering with the Detroit Trading Company to create a massive repository of auto finance leads online.
Don't miss a story -- sign up for our FREE e-mail newsletters and view the latest headlines at a glance.
Tech News Flash [ View Sample ]
E-Commerce Minute [ View Sample ]
ECT News Network Weekly Newsletter [ View Sample ]
Shortcuts
ECT News Network Information
Reader Services
Corporate
ECT News Network