Error » Microsoft Error! » Microsoft Operating Systems Error » Microsoft windows vista error » Symantec: Vista fairly secure but still full of holes

Microsoft windows vista error all errors related to microsoft windows vista

Post New Thread Reply
  Symantec: Vista fairly secure but still full of holes
LinkBack Thread Tools Display Modes
Old 01-Mar-2007, 09:00 PM   #1 (permalink)
Administrator
 
Anilrgowda's Avatar

Posts: 18,712
Join Date: Jan 2006
Rep Power: 10 Anilrgowda is on a distinguished road

IM:
Default Symantec: Vista fairly secure but still full of holes

Windows Vista delivers on some of the security improvements Microsoft promised for it, but there are still a host of ways attackers can exploit the OS and leave users open to threats, according to findings by Symantec.
The security vendor's Security Response Advanced Threat Research group has released four reports on the security implications of Vista -- with two more to come next week -- and found that while the underlying OS is more secure, there are still unplugged holes that will allow malicious code to penetrate a user's system, says Oliver Friedrichs, director of Symantec's Security Response Emerging Threats group.

"There are areas where they are to be commended [because] they have eradicated certain types of threats," he says. "But there are areas where Microsoft falls short and continues to create exposure for consumers and enterprises."

Microsoft has done a good job at locking down the core OS against memory-manipulation threats, such as buffer overflows that were used by worms such as Blaster and Sasser to attack Windows, Friedrichs says. This security improvement has spurred attackers into changing their tactics and target third-party applications that run on the OS rather than the OS itself, he says.

It's in protecting applications where Vista falls short, Friedrichs says. "Third-party applications are still exposed," he says.

Third-party application drivers running on the 64-bit version of Vista are especially vulnerable due to the ability to disable the driver-signing feature of the 64-bit kernel, says Friedrichs. Symantec security researchers were able to disable this new feature -- which requires all kernel drivers to be signed digitally by a reputable party in order to load into the kernel -- in just one week.

Other new 64-bit kernel features -- patchguard and code integrity -- also could be disabled in a week, he adds. Patchguard protects the kernel from direct threats such as rootkits, and code integrity enables the OS to protect itself and its applications from external manipulation.

Another feature in Vista that was supposed to improve the security of the system actually poses a new security threat, says Friedrichs. User account control, a feature that can be set up so a Vista user has limited privileges to access an application or an administrator function, actually can be bypassed by hackers to allow someone to gain full and unrestricted access to the OS, he says.

"Originally it was considered to be one of the most notable security technologies in Vista," says Friedrichs. "More recently, because of research done both by Microsoft and third parties, we found that the technology is not as effective as originally envisioned."

Friedrichs acknowledges that it may be self-serving for Symantec, which offers add-on security products for Windows, to publish findings that the OS is not secure. But he says that his group conducted its research by a legitimate scientific method. Moreover, the research is intended to provide recommendations to Microsoft for improving Windows security in the future.

In a statement through its public-relations firm, Microsoft defends its position that Vista is the most secure client version of Windows to date. But the company says it will take into consideration research by Symantec and other parties about Vista and make changes if necessary to make the OS even more safe against possible threats.

Source:Computerworld > Symantec: Vista fairly secure but still full of holes
Anilrgowda is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit!
Reply With Quote
   


   
Post New Thread Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump


All times are GMT -8. The time now is 07:14 AM.

Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.2.0

DMCA Policy

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227