Top Most Vulnerable Applications and Operating Systems in 2010

Discussion in 'malware problems & news' started by PJC, Feb 19, 2011.

Thread Status:
Not open for further replies.
  1. PJC

    PJC Very Frequent Poster

    Joined:
    Feb 17, 2010
    Posts:
    2,959
    Location:
    Internet

    Attached Files:

    • 1.jpg
      1.jpg
      File size:
      93.9 KB
      Views:
      885
    • 2.jpg
      2.jpg
      File size:
      75.1 KB
      Views:
      897
    • 3.jpg
      3.jpg
      File size:
      19.2 KB
      Views:
      894
  2. dw426

    dw426 Registered Member

    Joined:
    Jan 3, 2007
    Posts:
    5,543
    I'm not at all surprised that applications have become the favorite target over the OS. Chrome topping the chart is somewhat surprising, given it's supposed "tight security", though popularity means bigger target. Flash never surprises me..but people/websites still use RealPlayer? *shrug*. Interesting report.
     
  3. doc77

    doc77 Registered Member

    Joined:
    Jun 10, 2010
    Posts:
    55
    Very interesting and useful. Thank goodness for secunia psi and this is exactly why I use sumatra for pdf's instead of adobe acrobat reader.

    I'm really surprised to see Chrome so high, I thought Chrome won all those 'hardest to hack' contests? Maybe this will help put to rest all the "don't use IE!" discussions, IMO its quite secure with protected mode & the smartscreen filter enabled. I can't believe it has nearly half the vulnerabilities of FF.
     
  4. tlu

    tlu Guest

    I can - see here.
     
  5. Page42

    Page42 Registered Member

    Joined:
    Jun 18, 2007
    Posts:
    6,943
    Location:
    USA
    Internet Explorer would be ranked even better if it wasn't for IE6.0, which I am assuming is included in this comparison.
     
  6. Escalader

    Escalader Registered Member

    Joined:
    Dec 12, 2005
    Posts:
    3,710
    Location:
    Land of the Mooses
    Thanks for this thread, very interesting stuff.

    After the pie chart this was also posted:


    What is missing for me is the versions of the applications and the operating systems.

    What version of IE were they using? Same for FF?

    FF is less secure than IE?

    When they say patching adobe etc is needed to ensure adequate security it might be an overstatement. I'm not sure Adobe is ever secure patches or not.

    I'm going to look at their source data to see what can be learned!
     
  7. Page42

    Page42 Registered Member

    Joined:
    Jun 18, 2007
    Posts:
    6,943
    Location:
    USA
    I doubt it will put all the discussions to rest, but for those of us who use IE and haven't fallen victim to the FUD, the findings are encouraging.

    Here is an excerpt from an InfoWorld article titled, "Technology's biggest myths"...

     
  8. Noob

    Noob Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    6,491
    Wow Chrome has some high amount of numbers.
    I just hope Chrome fast development also means fast vulnerabilities fixing, which i feel it is :)
     
  9. Serapis

    Serapis Registered Member

    Joined:
    Nov 15, 2009
    Posts:
    241
    Actually most of Chrome's vulnerabilities are hypothetical and discovered by the development team rather than in the wild. Chrome's releases and fixing speed is very high compared to all the other browsers. The browser sandbox is incredibly secure which doesn't enable the exploits to be successfully used to infect.

    From my experience IE updates tend to come with patch Tuesday which is quite a while.
     
  10. J_L

    J_L Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    8,738
    How are Macs safer than linux?
     
  11. Osaban

    Osaban Registered Member

    Joined:
    Apr 11, 2005
    Posts:
    5,617
    Location:
    Milan and Seoul
    I can't understand either, hopefully Serapis's interpretation is right.
     
  12. elapsed

    elapsed Registered Member

    Joined:
    Apr 5, 2004
    Posts:
    7,076
    With IE9 coming with even stronger security and an improved SmartScreen filter with reputation on downloads, it's only going to get better.
     
  13. Page42

    Page42 Registered Member

    Joined:
    Jun 18, 2007
    Posts:
    6,943
    Location:
    USA
    No doubt.
    And here I was, looking forward to upgrading to 9.0, only to learn that it won't run on XP.
    It's almost enough to make me migrate to Win7. :)
    I guess that's the greater plan, isn't it?
     
  14. elapsed

    elapsed Registered Member

    Joined:
    Apr 5, 2004
    Posts:
    7,076
    Inevitable really, and with SP1's appearance on Windows Update to be imminent, what better time? :)
     
  15. vasa1

    vasa1 Registered Member

    Joined:
    May 1, 2010
    Posts:
    4,417
    Since I manage so far without IE9 (and Vista/Win7), I'm putting some money aside in a Ponzi scheme. It (my money) will grow exponentially and then I'll spring for Win8 among other things.

    On a less serious note, the under-privileged have been ranting about IE9 being restricted to Vista/Win7 for several months now. This site has been quite voluble on the matter.
     
  16. elapsed

    elapsed Registered Member

    Joined:
    Apr 5, 2004
    Posts:
    7,076
    Seems a bit silly to wait for a new Operating System (Windows :cool: that... as with all new things, will have teething problems and in this case, could be a complete flop. Rather than upgrade to a more secure OS now that has removed all teething problems (SP1) and experience IE9, but that's my opinion. At least if Windows 8 fails, I'll be on a recent OS that isn't as exploitable as what will then be an Operating System over a decade old.
     
  17. Escalader

    Escalader Registered Member

    Joined:
    Dec 12, 2005
    Posts:
    3,710
    Location:
    Land of the Mooses
    Yes, my expereince is that MS's o/s seem to be in a cycle.

    Good, not so good, eg windows xp sp3 good, vista (?) then Windows 7 I find good.

    Going back we had windows 95 then windows me and windows 98.

    Anyway, you guys see what I mean I hope. I skip every other os. Never did go with vista.
     
  18. PJC

    PJC Very Frequent Poster

    Joined:
    Feb 17, 2010
    Posts:
    2,959
    Location:
    Internet
    +1 :thumb:
     
  19. prius04

    prius04 Registered Member

    Joined:
    Apr 14, 2007
    Posts:
    1,248
    Location:
    USA
    Just wondering whether that would have anything to do with the fact that Google integrated Flash Player into Chrome last year. I mean, IF they're including Flash vulnerabilities, since Chrome has Flash integrated, that might explain Chrome being at the top of the list. o_O
     
  20. dw426

    dw426 Registered Member

    Joined:
    Jan 3, 2007
    Posts:
    5,543
    Which, while certainly easy on the user, is a good reason NOT to integrate plugins within the browser.
     
  21. Cudni

    Cudni Global Moderator

    Joined:
    May 24, 2009
    Posts:
    6,963
    Location:
    Somethingshire
    off topic posts removed. No need to hear tired old arguments over what software performs better
     
  22. katio

    katio Guest

    Come on, why do you keep posting that rubbish? I thought we had dealt with this utter nonsense already?

    number of vulnerabilities != number "of the top most targeted applications" or some kind of security rank
    https://www.wilderssecurity.com/showthread.php?t=286831

    At least I can agree with their final remarks about Windows update isn't enough. But the talk about "targets" shows this Cristian Florian has no idea what he's talking about.
    The big problem with such articles is that they are the norm, not the exception :(
     
  23. safeguy

    safeguy Registered Member

    Joined:
    Jun 14, 2010
    Posts:
    1,795
    Never has a truer word been spoken.:thumb: I abide by your order, your Majesty.:p
     
  24. John Bull

    John Bull Registered Member

    Joined:
    Nov 22, 2009
    Posts:
    904
    Location:
    London UK
    Love it.

    I see my old pal Google Chrome is top of the charts. Well done Chrome, go for gold.

    Well, ya live and learn. Chrome is so fast, it is a blur, but by golly it`s so full of holes it provides an open playground for all the hackers and hijackers.

    John
     
  25. nanana1

    nanana1 Frequent Poster

    Joined:
    Jun 22, 2007
    Posts:
    947
    ROFL...Self-denial.;)
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.