Microsoft issues its biggest-ever security fix
Wednesday 13 October 2010
Microsoft issued its biggest-ever security fix, including repairs to its ubiquitous Windows operating system and Internet browser for flaws that could let hackers take control of a PC.
The new patches aim to fix a number of vulnerabilities including the notorious Stuxnet virus that attacked an Iranian nuclear power plant and other industrial control systems around the world.
Microsoft said four of the new patches - software updates that write over glitches - were of the highest priority and should be deployed immediately to protect users from potential criminal attacks on the Windows operating systems.
Microsoft said it also repaired other less serious security weaknesses in Windows, along with security problems in its widely used Office software for PCs and Microsoft Server software for business computers.
Microsoft released 16 security patches to address 49 problems in its products, many of which were discovered by outside researchers who seek out such vulnerabilities to win cash bounties as well as notoriety for their technical prowess.
"This is a huge jump," said Amol Sarwate, a research manager with computer security provider Qualys Inc. "I think the reason for it is that more and more people are out there looking for vulnerabilities."
The geeks who report such vulnerabilities to software makers are known as "white hat" hackers. Sarwate warned that there are also plenty of "black hats," or criminal hackers who look for vulnerabilities in software that they can exploit to launch attacks on computer systems.
Indeed, the world's biggest software maker said that the patches released on Tuesday include software to fix a vulnerability exploited by the Stuxnet virus - a malicious program that attacks PCs used to run power plants and other infrastructure running Siemens industrial control systems.
The virus, which infected computers at Iran's Bushehr nuclear power plant, was discovered over the summer. Security research Symantec said that it detected the highest concentration of the virus on computer systems in Iran, though it was also spotted in Indonesia, India, the United States, Australia, Britain, Malaysia and Pakistan.
So far Microsoft has patched three of the four vulnerabilities exploited by Stuxnet's unknown creators.
The total of 49 vulnerabilities exceeds the previous record of 34, which was set in October 2009 and matched in June and August of this year.
The constant patching of PCs is a time-consuming process for corporate users, who need to test the fixes before they deploy them to make sure they do not cause machines to crash because of compatibility problems with existing software.
Life & Style blogs
‘I had to terminate my pregnancies because I was carrying girls’ - the story of a woman forced into gender-selective abortions
Titanfall lands with a boom on Xbox One, but will it save Microsoft's console?
Tomnod: How to join the virtual search party scanning satellite imagery for missing flight MH370
'100 retweets and I'll shoot someone': American man arrested for Twitter threat
St Patrick's Day 2014: Why is Guinness black - and other mysteries surrounding Ireland's favourite drink
Katie Hopkins continues campaign to become Britain's most hated talking head with poorly timed Bob Crow tweet
No EU referendum under Labour: Ed Miliband to reveal that vote on membership is ‘unlikely’ in next Parliament if party wins power
Grace Dent: Who cares if she spells it Barraco Barner? Gemma Worrall is more employable than some bookish arts graduate
Europeans have ‘got whiter’ due to natural selection in past 5,000 years, scientists say
Fracking is turning the US into a bigger oil producer than Saudi Arabia
The rise of Ukip: Study warns Labour that Eurosceptic party's electoral base now 'more working class than any of the main parties'
- 1 Is your name now 'banned' in Saudi Arabia?
- 2 Sailor who kissed a nurse in famous WWII photograph dies aged 86
- 3 Best films on Netflix: 32 movies that will put an end to your scrolling
- 4 Istanbul protesters take 'Ellen selfie' from the back of a police van
- 5 Lady Gaga has struggled with eating disorders in the past, so it's indefensible that she's glamourising bulimia in her SXSW set
iJobs Gadgets & Tech
£50000 - £57000 per annum + bonus + benefits: Pro-Recruitment Group: Pan-Europ...
Negotiable: Harrington Starr: Test Analyst (SQL, LINUX, QTP, ORACLE, MANUAL, A...
£25,000 to £35,000: IT Connections Ltd: Signal Processing Engineer / Acoustics...
£60000 - £70000 per annum + Benefits: Harrington Starr: Senior QA Automated Te...