Member Sign In
Not a member?

A Wired.com user account lets you create, edit and comment on Webmonkey articles. You will also be able to contribute to the Wired How-To Wiki and comment on news stories at Wired.com.


It's fast and free.

Webmonkey is a property of Wired Digital.
processing...
Join Webmonkey

Please send me occasional e-mail updates about new features and special offers from Wired/Webmonkey.
Yes No

Please send occasional e-mail offers from Wired/Webmonkey affiliated web sites and publications, and carefully selected companies.
Yes No

I understand and agree that registration on or use of this site constitutes agreement to Webmonkey's User Agreement and Privacy Policy.
Webmonkey is a property of Wired Digital.
processing...

Retrieve Sign In

Please enter your e-mail address or username below. Your username and password will be sent to the e-mail address you provided us.

or
Webmonkey is a property of Wired Digital.
processing...

Welcome to Webmonkey

A private profile page has been created for you.
As a member of Webmonkey, you can now:
  • edit articles
  • add to the code library
  • design and write a tutorial
  • comment on any Webmonkey article
Close
Webmonkey is a property of Wired Digital.

Sign In Information Sent

An e-mail has been sent to the e-mail address registered in this account.
If you cannot find it in your in-box, please check your bulk or junk folders.
Sign In
Webmonkey is a property of Wired Digital.

Apple, Microsoft Top List of Most Vulnerable Software

SoftwarevulnerablitiesA new study authored by IBM lists software from Apple, Microsoft and Joomla as the most vulnerable to attack. Apple takes the number one spot, but Microsoft, IBM and Sun are all in the top ten. Also noteworthy is the inclusion of web-based software like Joomla (number two) and WordPress, both very popular online content management systems.

Echoing a similar report from Sophos that came out in July, the IBM report shows one clear, overall trend: the number of vulnerabilities in our software is increasing.

The other interesting part of the report, which you can download in PDF form, is that attacks have largely shifted from operating systems to web application, hence the inclusion of Joomla, Wordpress and Drupal.

The report also points out that, from a cracker’s perspective the web-based attacks are very highly publicized and offer more bang for your buck. That conclusion falls in line with the increasing number of automated SQL injection attacks we’ve seen in the past year.

So what’s a security conscious user to do? Well, as we pointed out in the recent Apple DNS debacle, you’re largely at the mercy of venders to update their software.

When security patches are available apply them. Beyond staying current, use your head; don’t do stupid stuff like opening unknown e-mails, browsing random Blogger.com sites or downloading files from untrusted sites. A bit of common sense can get you long way on the web.

[via CNet, image from IBM report]

See Also:

Post Comment Comments Permalink Print
Reddit Digg

 
Subscribe now

Special Offer For Webmonkey Users

WIRED magazine:
The first word on how technology is changing our world.

Subscribe for just $10 a year