ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Microsoft's security strategy pilloried

Munir Kotadia ZDNet Australia

Published: 18 Feb 2005 08:45 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Microsoft has bought two antivirus companies and an antispyware company -- the latter acquisition has already produced an antispyware application for Windows -- since Bill Gates launched the Trustworthy Computing Initiative, which changed coding practices to make security Microsoft's first priority.

However, Gartner analyst Neil MacDonald said in an advisory on Friday that Microsoft has "missed an opportunity" to clarify its position in the security market by not stating its intentions. He said the company needs to "articulate whether it plans to be a leader in consumer and enterprise security solutions across desktop, server and server gateway".

"Microsoft's overriding goal should be to eliminate the need for AV and AS products, not simply to enter the market with lookalike products at lower prices," said MacDonald.

In the advisory, MacDonald predicts that Microsoft will launch a combined antivirus and anti-spyware product mid-2005, which will directly compete with established products such as Norton Antivirus from Symantec.

"This move will challenge antivirus vendors that depend heavily on revenue from consumers, such as Symantec, and vendors that derive substantial revenue from up-selling enterprises to antivirus product suites that include desktops and servers, such as McAfee and Computer Associates," said MacDonald.

However, James Turner, security analyst at Frost & Sullivan, told ZDNet UK sister site ZDNet Australia that Microsoft's security strategy is a "commercially sensitive" area and the company is not obliged to reveal its strategy.

"The fact is that Microsoft have purchased a number of security oriented companies, anti-spyware and antivirus. You don't buy a number of companies for the fun of it. This is part of a long term strategy," said Turner.

Additionally, Turner said Microsoft's attitude to security has changed since the launch of its trustworthy computing initiative. He cites the company's response to the recent attack on MSN Messenger.

"You don't just judge a company by what they say, you also judge them by what they do. Microsoft's recent clamp down on MSN Messenger to repair the vulnerabilities there is a clear sign that Microsoft can mobilise very quickly when something is completely within its control. If Microsoft was ignoring security the market would punish it and so would the legal system," said Turner.

Gartner's MacDonald also attacked Microsoft's decision to only create an updated version of Internet Explorer (version seven) for Windows XP, hinting that the only reason behind the decision is to force enterprises to upgrade from Windows 2000.

"The decision to restrict IE 7.0 to the XP platform also suggests that Microsoft wants to force users of older platforms to upgrade if they want improved security. If Microsoft wishes to be seen as a responsible industry leader in maintaining security for its products and its customers, it should provide IE 7.0 for Windows 2000 users.

"Furthermore, instead of making more evolutionary security improvements to IE, Microsoft should announce that it will fundamentally rebuild IE with security in mind," said MacDonald.

The Gartner advisory concludes with recommendations that are likely to cause some concern to traditional antivirus vendors.

According to Gartner, companies should demand that their antivirus provider offers an enterprise-class solution -- including anti-spyware -- at no cost by the end of this year. Gartner also advises companies to demand a "converged desktop security product with antivirus, anti-spyware, personal firewall and behaviour blocking at a total price no more than 20 percent higher than what you now pay for standalone AV."

Neither Microsoft or Symantec were available for comment.

Munir Kotadia reported from Sydney for ZDNet Australia. For more ZDNet Australia stories, click here.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
88 out of 187 people found this useful



Company/Topic Alerts

Create a new alert from the list below:








Related Jobs

PERL APPLICATION DEVELOPER

SQL Secondary Skills - Knowledge of procedural SQL would be an advantage - Proven experience of Perl based web services - Familiarity with ...

Java Project Engineer

Apache2 administration - Apache mod_rewrite/regular expressions - Knowledge of J2EE and Java design patterns, and experience in the profiling and ...

UNIX/NETWORK SYSTEMS ADMINISTRATOR

Requirements - Proven linux sys admin experience (preferably RedHat) - Shell Scripting (bash, perl, php, xml) - Apache Webserver Admin - Database ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

2 comments