Tim Anderson

Let Microsoft clear up its own mess

Cheap and effective security products from Microsoft would benefit users who have up to now been poorly served by the antivirus industry

Written by Tim Anderson

It’s bad enough that Microsoft is getting in to all aspects of security. But now its going to kill off its competitors through predatory pricing,” says Alex Eckelberry of security company Sunbelt. Symantec chief executive John Thompson is also whining. “If all of a sudden the whole world uses the monoculture of Microsoft and the monoculture of Microsoft security capability, I am not sure we would create a more secure world,” he says.

The reason for these outbursts is Microsoft’s full entry into the Windows security software market, with its OneCare offering aimed at consumers and small businesses; and an Enterprise range, called Forefront. Pricing appears more than competitive, so does Thompson have a point?

I am not convinced. It is not as if the current situation is good. In its latest report, analyst Gartner tells us the worldwide antivirus industry is worth over $4bn annually, yet much of this technology is ineffective. Analyst Robin Bloor has a one-person campaign he calls Avid – Antivirus is Dead. His main point is simple. “Signature-based antivirus technology is inadequate, because it fails to protect its users from new viruses for many hours and often several days after they appear,” he writes in his blog.

I endorse Bloor’s campaign. I rarely see Windows PCs without an antivirus product installed, yet this has not solved the security problems of internet-connected computers. Some infections are prevented, but the antivirus software causes problems of its own. Such software needs to get its hooks deep into the system, so performance suffers and bugs can have severe consequences.

Incidents that come to mind include errant antivirus processes absorbing 100 percent of CPU time or creating unlimited numbers of temporary files, in both cases making a business-critical server useless. In addition, users may be falsely reassured by their security software, thinking it protects them from all attacks and causing them to lower their guard when it comes to best practice.

Overall the security industry has let us down. So indeed has Microsoft, as the vendor of the vulnerable software which has caused a large part of the problem, and the creator of a culture in which users run with local admin rights.

While I sympathise to a degree with the security companies now being undercut, because parts of their business are genuinely under threat, there are more important considerations. First, if Microsoft can now mitigate the damage it has done by offering effective security software it should not be impeded. Second, cheap security tools benefit everyone, because it leads to wider adoption. Third, it makes sense to have Microsoft supply Windows security software, since it has the best chance of working properly with the intricate Windows permission system, not slugging performance, and being properly supported when it causes problems.

  • Have your say
  • Send to a friend
  • Print this
  • Share

Tags:

reader comments

related articles

 

RSA 2010: Q&A with Bruce Schneier

Schneier on security, SSL and squid 03 Mar 2010

Top 10 technology mistakes

Cock-ups of a technical bent, old and new 24 Apr 2010

related white papers

today's top stories

Amazon Kindle 3 e-book reader review

Amazon trims the size and price of its newest Kindle, and adds a bargain Wi-Fi-only model 02 Sep 2010

RBS to cut 1,000 IT roles

Royal Bank of Scotland has announced it will cut 3,500 jobs, 1,000 of which are in IT support 02 Sep 2010

Apple overhauls iPod Shuffle, Nano and Touch

New models come with iTunes update and social networking tool 02 Sep 2010

Scottish school shifts wholly to the iPad

Head of computing and IT at Cedars School gives the rationale behind his decision 01 Sep 2010

Salford's MediaCity pushes technology boundaries

In preparation for 3D, ultra HD and a tapeless workflow 02 Sep 2010

Advertisement

Power and cooling management for the data centre
The principles for achieving power and cooling capacity management in the modern data centre

The value of virtual infrastructures to business continuity
This IDC paper examines the role of server and storage virtualisation in enabling application and data continuity at a lower overall cost

Advertisement

Citrix

Keep up to date with the latest products, services and technologies from the world's leading IT companies; IThound.com brings you thousands of white papers, case studies and analyst reports.

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

More available - click 'submit' to view

Existing User

Newsletter user login:

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

Latest poll

The Chinese Market

The Chinese Market

Is your company considering expansion into the Chinese market?

View poll results

Latest audio and video articles

A microphoneAudio

Computing Podcast: Tech Talk episode 5

Join Tech Talk for an overview of the week's top IT stories, and a debate on IT self-service. Will it provide value? 27 Aug 2010

A microphoneAudio

Computing podcast: Tech Talk episode 4

Join Tech Talk for an overview of the week's top IT stories, and a debate on IT skills. Is the UK slipping behind? 20 Aug 2010

Latest in-depth articles

picture of a TV studioAnalysis

Salford's MediaCity pushes technology boundaries

In preparation for 3D, ultra HD and a tapeless workflow 02 Sep 2010

Second Life avatarAnalysis

What are the business benefits of virtual worlds?

Experts cite collaboration and brainstorming, recruitment and training 26 Aug 2010

Primary Navigation