'We have a lot more work to do' - Microsoft

NEWS
The head of Microsoft’s Trustworthy Computing initiative, Scott Charney, says the Windows vulnerability on which the MSBlast worm is based is a sign the software heavyweight has "a lot more work to do".

Click here for details on protecting your PC.

During an interview with ZDNet Australia, Charney said he was disappointed when the software bug, which affected Windows Server 2003, touted as the most secure Microsoft operating system ever, was unearthed.

"We have always said that Windows Server 2003 would not be bullet-proof," he said. "It’s disappointing. Is it surprising? No… it just means we have a lot more work to do."

Disappointment seems an appropriate reaction -- the company spent $200m (£125m) in an attempt to secure Windows Server 2003 by standing down 8,500 developers for security training.

However, the security boss defended Microsoft's product security and said the company’s products have a disproportionately bad reputation.

"To some extent Windows is as secure, if not more secure, than many other systems, but the fact of the matter is we have [overwhelming] market share and with that comes increased responsibility," he told ZDNet Australia . "Even if we’re doing better than everyone else, that's great, but we have to do better still."

"Software's complex and it's not likely we'll get the number of bugs to zero but we have to do a better job than we've done to date," he added.

As for the threat of a "cyber terrorism" attack, Charney says there's a lot of hype out there.

"As difficult and as problematic as an event like Slammer might be, it doesn't compare to the World Trade Center [attacks]… If you’re trying to provoke terror the Internet may not be the best medium for that."

The real threat, he said, will come from a blended, co-ordinated threat, for example an attack on telephone infrastructure prior to a physical attack -- like the World Trade Center disaster -- and would be intended to disrupt emergency response capabilities.

"I think many of us in the field are concerned about the fact that a more co-ordinated terrorist attack could be the problem."

Talkback

I was administering NT/2000 domain for some 1-2 yrs. I had no idea about linux/unix etc. But i was hearing the much-touted-hype that windows is useless and unstable, linux/unix is incomparably secure, and stable, and all such accusations directed against Microsoft. But now, during the last 1 yr, i had oppurtunity to work in linux/unix etc. With this exp, i can confidently say that people are seriously understating the stability/security of windows NT/2000 while closing their eyes to the fact that these unix/linux etc etc cannot be called superior or even equal to windows in many respects of stability/security. For eg, how many times you have seen a solaris system rebooting in 15 minutes without any mistake from u? I have seen 3-4 times per 15 minutes. Compared to windows, unix/linux is a dead box. As unstable as windows if we use it in the same manner as windows. We use windows like a spade, rough treatment, and use linux like necklace, treat very gently, and then say the spade is dirty!!!

via Facebook 29 August, 2003 12:51
Reply

Post your comment

In order to post a comment you need to be registered and logged in.

You can also log in with Facebook. Log in or create your ZDNet UK account below

  • Login

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Community FAQ

Get ZDNet UK's daily newsletter

Enter your email address to sign up

ZDNet UK Live

SPM

The 2 million number quoted is shipments not sales, an exact repeat of last year's dire sales of WP7. Sales to customers are likely to number only...

3 hours ago by SPM on Nokia earnings fail to shine despite Lumia
apexwm

It sounds like this is just another variable in the complex equation of Microsoft licensing, which often results in customers overpaying as it is....

4 hours ago by apexwm on UK customers to lose out in Microsoft licensing change
chonzchor

I am really thankful to you for this nice and beautiful information.I really like this. cable ties

5 hours ago by chonzchor on Currys £16.99 USB cable rip-off.
Brian Jones

What would be nice would be if Microsoft practiced consistent pricing between the US and Europe.

10 hours ago by Brian Jones via Facebook on UK customers to lose out in Microsoft licensing change
Karen Friar

@Scott Deagan: Ofcom dedicated a section to upload speeds - see page 19 onward of its full report:...

10 hours ago by Karen Friar on UK broadband speed climbs 22 percent
EUDataProtection

The EU proposals can all be read in full on the reform website: http://ec.europa.eu/justice/data-protection/minisite/index.html

12 hours ago by EUDataProtection on Firms face tough new EU fines for data breaches
Jake Rayson

Found out that Taskwarrior stores all data in plain text files: "Task writes all pending tasks to the file ~/.task/pending.data and all completed...

14 hours ago by Jake Rayson on Taskwarrior: command line task manager
ians1

"...based 6,000 miles away..." Indeed, so who do you complain to when things go wrong? I would not buy shares in Faecebook even if I could...

14 hours ago by ians1 on Facebook plans to raise $5bn via share launch
servermanagement

These are really very useful tips of backing up the system. Each tips are important and essential to prevent loosing all the data that we have....

16 hours ago by servermanagement on Ten ways to take the sting out of IT disasters
Scott Deagan

Why is the upstream never discussed? I'd like to see Ofcom explain to Internet users why people in the UK can only get a maximum of 10Mb/s upstream...

24 hours ago by Scott Deagan via Facebook on UK broadband speed climbs 22 percent
Moley

Seemingly a very strange decision, even perverse. Mind you, the basis of the decision is hardly explained here or in Cnet. Perhaps we will hear...

1 day ago by Moley on Free Maps costs Google £400K in damages in France
Jake Rayson

@OccupyACAT: I had heard mention of the Emacs extension but not the Ubiquity project. Interesting to see an idea spread almost simultaneously! Re....

1 day ago by Jake Rayson on Ubuntu HUD Intenterface? Sublime already there!
markhumphryes

With no Flash support on LoveFilm, mobile devices running Android will not be able to use it - I presume - I tried a trial via my Galaxy Tab 10.1...

1 day ago by markhumphryes on Lovefilm drops Flash, kills Linux support
manek

And people wonder why there is caution about doing business with large, consumer-focused technology companies, most of which are based 6,000 miles...

2 days ago by manek on Facebook plans to raise $5bn via share launch
manek

Yes, frameworks and smarter compilers - but I suspect a lot of the code will have to be written with parallel processing as one of its fundamental...

2 days ago by manek on Parallel computing takes a step forward
Simon Bisson and Mary Branscombe

Well, this is why I'm both fascinated and slightly worried; parallel computing and concurrency and complex architectures don't seem to be something...

2 days ago by Simon Bisson and Mary Branscombe on Parallel computing takes a step forward
ians1

Let's hope that they take more notice of their shareholders than they do of their poor customers! I have never experienced customer service as bad...

2 days ago by ians1 on Facebook plans to raise $5bn via share launch
servermanagement

Thanks for the heads up. Will definitely check this HUD Intenterface.

2 days ago by servermanagement on Linux Minterface
Will A

Some more observations by an extremely frustrated user in Canada (apparently every country has a different set of "issues"): The web interfaces...

2 days ago by Will A on Cambridge researchers knock Verified by Visa
Jake Rayson

@zdnetukuser: I hope there's more conciliation and less bitterness in the graphical shell camps, I'd like to Ubuntu to succeed, I *want* to have a...

2 days ago by Jake Rayson on Linux Minterface