Security Vulnerabilities Rising Rapidly

Almost half of all security vulnerabilities did not have a vendor supplied patch by the end of 2010.


You Can't Detect What You Can't See: Illuminating the Entire Kill Chain

On-Demand Webinar

With the seemingly endless torrent of new malware being created, one might expect a corresponding wave of patches. But no -- apparently the patches aren't keeping up. Sean Michael Kerner reports.

According to a new report from IBM (NYSE:IBM), 2010 was a good year -- for new security vulnerabilities.

The annual IBM X-Force 2010 Trend and Risk Report reveals that in 2010, there was a 27 percent year-over-year increase in the number of new security vulnerabilities. In total, IBM documented more than 8,000 new vulnerabilities in 2010.

"In conjunction with that there was also a 21 percent increase in the public release of exploit code that targets vulnerabilities," Tom Cross, threat intelligence manager at IBM X-Force told InternetNews.com. "This data means that we were busier in 2010 than 2009, it's also indicative of the progress that has been made."

Cross noted that the increase in vulnerability reports is partly due to the amount of work that is going on in companies to identify software vulnerabilities.

Though the rising number of reported vulnerabilities can be seen in a positive light, there is another related trend that IBM is warning about. Cross noted that 44 percent of all security vulnerabilities did not have a vendor supplied patch by the end of 2010.

Read the rest about security vulnerabilities at eSecurity Planet.

Tags: security, malware, security vulnerability, exploits

0 Comments (click to add your comment)
Comment and Contribute


(Maximum characters: 1200). You have characters left.



IT Management Daily
Don't miss an article. Subscribe to our newsletter below.

By submitting your information, you agree that datamation.com may send you Datamation offers via email, phone and text message, as well as email offers about other products and services that Datamation believes may be of interest to you. Datamation will process your information in accordance with the Quinstreet Privacy Policy.