R E L A T E D   C O N T E N T
ADVERTISEMENT

Linux vendors attack analyst report

Research claims Windows is just as secure as key Linux distributions

Robert Jaques, vnunet.com 07 Apr 2004
ADVERTISEMENT

Linux vendors Debian, Mandrake, Red Hat, and SuSE have hit back at research which claims that Linux and Microsoft products are both secure.

In a report released late last month entitled Is Linux more Secure than Windows?, analyst Forrester said: "Microsoft gets a bad rap for security, while many believe that Linux is relatively secure.

"A fair assessment? Not really: After collecting a year's worth of vulnerability data, Forrester's analysis shows that both Windows and four key Linux distributions can be deployed securely."

But now the Linux distributors are criticising the report, arguing that as it treats all vulnerabilities as equal it has limited real-world value for customers.

In a statement Debian, MandrakeSoft, Red Hat and SuSE said: "While the Linux vulnerability data that is the basis for the report is considered to be sufficiently accurate and useful we are concerned about the correctness of the conclusions made in the report."

The companies said they evaluate each flaw to determine the priority at which a fix for a vulnerability is to be worked. "Our users will know that for critical flaws we can respond within hours.

"This prioritisation means that lower severity issues will often be delayed to let the more important issues get resolved first."

The Linux companies claimed the analyst failed to take this into account when measuring the time between the public knowledge of a security flaw and the availiability of a vendor's fix.

"Not all vulnerabilities have an equal impact on all users," they warned.

"We believe the report does not treat the open source vendors and single closed source vendor in the same way. Open source software is known for its variety and its freedom of choice amongst the standards it defines.

"Multiple implementations of these standards are typically offered for both desktop and server use, which gives users the freedom to select software based on their own criteria rather than those of the vendor."

See also:

Open DebateThe pros and cons of Windows and Linux in enterprise IT  12 May 2004
No overall winner as analysts ponder pros and cons of both operating systems  23 Apr 2004
Stanford among academic targets for attack on Linux and Solaris machines  14 Apr 2004
Microsoft chief accused of 'different way of counting' over Windows security alerts  05 Apr 2004
Linux users warned on kernel vulnerability  11 Mar 2004
Certification to further boost uptake in US government departments  22 Jan 2004
CIOs look seriously at Linux for the desktop as Microsoft's security problems continue  05 Dec 2003
Software giant's shares fall amid security worries  29 Oct 2003
We must inspire customer trust, chief executive tells partners  15 Oct 2003

All Operating Systems

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
C# Web Developer, Finance, London Financial Services Required: C#, ASP.NET, AJAX Fantastic opportunity not to be missed!! This is a great opportunity to work on a unique objectives that no other company is doing working ... more >
| JAM Recruitment
Senior Hardware Engineer Scotland/Edinburgh Communication Systems Permanent Position 40-45K+Benefits A leading organisation involved with the design and development of data acquisition systems and synthesis boards for a range of radar, signal intelligence and software radio ... more >
| JAM Recruitment
FPGA Engineer Defence/Safety Critical Buckinghamshire Permanent Position 45K+Benefits A leading UK defence organisation requires an experienced digital design engineer to strengthen its existing development team due to a number of long-term projects that have recently ... more >
| JAM Recruitment
DSP Engineer 3 Months Contract Hertfordshire £Excellent Rates£ This position requires you to have experience of measurement algorithms development for the generation and analysis of digital wireless communication standards including GSM, EDGE, UMTS, WLAN and ... more >
More job opportunities