Newsletters Welcome, Guest Log In | Register

Subscribe

Sign up now and get the best business technology insights direct to your inbox.

  • Daily Edge
  • CTO Edge Update
  • Business Tools & Templates
  • Aligning IT & Business Goals
  • Maximizing IT Investments

0

Microsoft's 'Exploitability Index' Not Very Reliable

Posted by Kara Reeder Nov 4, 2009 10:01:56 AM

Microsoft's attempt to predict whether hackers will create reliable exploit code for its bugs are right only 27 percent of the time, admits the company.

 

Computerworld reports that the "Exploitability Index" was intended to give customers more information to decide which vulnerabilities should be fixed first. But it turns out that Microsoft correctly predicted exploits only a little more than one out of every four times. Andrew Storms, director of security operations at nCircle Network Security, points out:

That's not as good as a coin toss. So what's the point?

Still, Microsoft defends its predictions:

The higher false positive rate for Critical security bulletins can be attributed to the conservative approach used during the assessment process to ensure the highest degree of customer protection for the most severe class of issues.

Add a comment Leave a comment on this blog post.

There are no comments on this post

ITIL V3 Foundation - Complete Certification Kit

Enhance your IT career by getting your ITIL Foundation Certificate. It's fast and easy with this complete resource. The 186-page eBook and companion online training course is guaranteed to help you pass the ITIL exam.

Learn more >

All About Reducing Your IT Costs

Looking to cut costs? Use this research-driven Excel tool to pinpoint which IT cost reduction measures best fit your needs.

Learn more >

Software Forum: Information On Demand Virtual Experience

This interactive virtual forum presents leading IT experts providing the insights you need to turn your information into a strategic driver for innovation, business optimization and competitive differentiation.

Performance Under Pressure: The State of Enterprise Web Application Quality and Availability

This research study finds that Web application issues are an all-too-common problem and examines these Web-based enterprise application issues from two perspectives: that of an online customer and that of a site manager.

Optimized Infrastructure

Hardware and software tools to create an enterprise infrastructure for data and business optimization.

Data Center Management

Indispensable technologies and best practices to maintain your organization's most valuable asset.

Tablet PCs

Powerful and portable computing capacity for today's high-speed, fluid business environment.

Greening IT with Server Consolidation

Learn how virtualization reduces the TCO of managing your date, while contributing towards your sustainability efforts.