All the latest UK technology news, reviews and analysis

Microsoft promises to patch up patches

by James Middleton

04 Jun 2003

Be the first to comment

  • Tweet this

Microsoft is cutting the number of ways software patches are installed, improving the security of its products and easing the burden placed on IT directors to manage version control.

Scott Charney, Microsoft's chief security strategist, speaking at the company's TechEd 2003 conference in Dallas, admitted that patching systems is often difficult and that their variable quality means that people do not always feel they can safely install them immediately.

"About 95 per cent of exploits occur after bulletins and patches are put out," Charney explained. "As a result, the reason the exploit is effective is because the patch uptake is too low."

Microsoft will tidy up its patching systems this year, he added.

Currently, the company uses eight systems to distribute patches to customers, but "by the end of the year, instead of eight installer technologies we will have two; one for operating systems and one for applications," Charney said.

In the future this will be consolidated to just one consistent user interface which will look at all a user's Microsoft products and tell them what they need.

Charney also said Microsoft would add "things you would expect" to its patches, such as an installer and an uninstaller, and ensure that patches register with the operating system.

He acknowledged that users often avoid early versions of its software for fear of encountering problems with the product. "When I put this group together, some of the developers came to me and said, 'We can have some improvements for you in about four months.' That's too fast," he said.

"I know our reputation. Version one: forget it; version two: forget it; version three: maybe. The bad guys are going to continue to innovate just like we do, so we have to do a really good job on this."

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

25%

1%

11%

63%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

Helpdesk/Service Analyst x3

Helpdesk/Service Analyst x 3 3 Month Contract...

2nd/3rd line Technical support EMEA (FRENCH SPEAKING)

French Technical support Specialist (2/3rd Line) CCNA...

ECM Project Manager - CMS, Document Management, Web 2.0

ECM Project Manager - CMS, "Document Management", Web...

PRESALES CONSULTANT/TECHNICAL CONSULTANT (CCNA, MCITP)

Skills - Presales, Consultant / Consultancy, Technical...

To send to more than one email address, simply separate each address with a comma.