Thank you for being a valued part of the CNET community. As of December 1, 2020, the forums are in read-only format. In early 2021, CNET Forums will no longer be available. We are grateful for the participation and advice you have provided to one another over the years.

Thanks,

CNET Support

General discussion

Analyst claims additional security layers in Windows add to risk

Mar 9, 2004 1:25PM PST

Dan Blum, senior vice-president and research director at Burton Group, warns users that each additional layer of security Microsoft adds to Windows operating systems creates new security risks. Most applications use the Win32 interface, which has no code access control, allowing any component software to invoke any other component software; a rogue Win32 program could thus subvert add-on security measures. A Burton Group report on Windows vulnerabilities recommends that developers avoid the Win32 interface in favor of the .Net architecture, which reduces the effect of programming errors. Many users are shying away from Windows Server 2003 in favor of Linux and Unix platforms, which have fewer dependencies and are easier to reconfigure.

http://www.computerweekly.com/articles/article.asp?liArticleID=128907

Discussion is locked