July 25, 2005 7:59 AM PDT

Security holes add up in second quarter

More than 422 new Internet security holes were found during the second quarter, according to data released Monday by the SANS Institute.

This represents an increase of 10.8 percent compared with the number found in the first quarter, and a jump of 20 percent compared with the second quarter of last year, the institute said in its quarterly report.

If companies and individuals don't take corrective action, the agency warned, their systems could be used by remote hackers for identity theft, industrial espionage, and distribution of spam and pornography.

In order to be included on the quarterly list, the vulnerabilities must affect a large number of users, the SANS Institute said. Additionally, they must allow an attacker to take control of a PC remotely, and they must remain unpatched on a substantial number of systems. Information sufficient to let people exploit the flaws must be available on the Net.

Among the flaws are serious vulnerabilities in popular data backup products used by enterprises, while home users face increased risk from holes in iTunes and RealPlayer, as well as Internet Explorer.

"We are seeing a trend to exploit not only...Windows, but other vendor programs that are installed on potentially large number(s) of systems," said Rohit Dhamankar of TippingPoint, which collaborated with the SANS Institute for the study.

"These include backup software, management software, licensing software, etc. Flaws in these programs put critical resources at risk, as well as having a potential to compromise the entire enterprise."

5 comments

Join the conversation!
Add your comment (Log in or register)
Firefox??
Firefox also released a series of security bulletins. Why is it not listed here? Clearly there is no editorial bias here! NOT!!
Posted by exmicrosoftie (2 comments )
Reply Link Flag
Come On
C|net clearly knows the office will receive tons of hate mails from open source fanatics if it EVER say something like "FireFox has bugs", "FireFox is insecure", or "FireFox just sucks" :)
Posted by 201293546946733175101343322673 (722 comments )
Link Flag
Security holes add up in second quarter
Security holes add up in second quarter

Mr. AT Alishtari, Founder and POA EDI Secure LLLP, says there is a lot of business for IT giants other than two factor authentication with offline device that stops online private ID theft and bank rape from use of stolen IDs.

There is also the fact that many machines and PCs are turned into robots blindly attacking government and network bank sites around the world. This cyber crime needs to be stopped directly with improved software since the PC owners do not even know they are being used for crime. There is a lot of work to do.
Posted by (66 comments )
Reply Link Flag
Security What Security
Maybe I am alone but I don't think so. If someone doesn't do something quick the cyber mafias will shut down E-Commerce with extortion.

Security is becoming a myth inside an allusion inside a dream the truth thereto is the Emperor has no clothes. That is what I think. Ciao now.
Posted by Iohagh (56 comments )
Link Flag
Lack of security is not what anybody needs
Why don't companies hire people to fix security holes or hold companies that lack in security legally responsible for insecurity of there products? If the products lack security, you put corporations at risk and people at risk, too. Also, paying for security is putting extra money in anti-virus, anti-spyware, and firewall companies pockets. Something has to be done and somebody has to be responsible for having insecure products. Who has to pay for the damages that security holes have? I think security should be more important than adding features. You add the security first, then the features, then we will talk about how good your product is. Forget Windows Vista. Make the current products better. If Microsoft, just made the products more secure, everybody would be happier. Also, whats up with the registry? Why don't software companies clean that up? It slows your computer down like bad when you uninstall stuff and it leaves stuff behind. No matter how good a product can be on windows, you have to buy so much stuff or get stuff for free in order to keep up with it. Its expensive sometimes and your computer can get damged severly and thats money out of your pocket and very unhappy customers.
Posted by grabacontroller (280 comments )
Reply Link Flag
 

Join the conversation

Add your comment

The posting of advertisements, profanity, or personal attacks is prohibited. Click here to review our Terms of Use.

Inside CNET News

1-2 of 12

Scroll Left Scroll Right

What's Hot

Discussions

Shared

RSS Feeds

Add headlines from CNET News to your homepage or feedreader.

Markets

Market news, charts, SEC filings, and more

Related quotes

RealNetworks (1.20%) 0.13 10.95
Apple (1.86%) 9.18 502.60
Microsoft (0.28%) 0.08 30.58
Dow Jones Industrials (0.57%) 72.81 12,874.04
S&P 500 (0.68%) 9.13 1,351.77
NASDAQ (0.95%) 27.51 2,931.39
CNET TECH (0.84%) 17.13 2,049.14
  Symbol Lookup