February 10, 2008   Sign In |  About ebizQ |  Contact Us |  Join ebizQ Gold Club
Andre Yee
Andre Yee's Security Insider
An open dialogue about security and compliance for the enterprise.

« Adobe Fixes Vulnerability But Problems Persist in the Wild | Main | Electronic Jihad? »

November 05, 2007
Top 10 Most Vulnerable Apps for 2007

As a software vendor, it must be the software equivalent of finding yourself on Hollywood's "worst dressed" list. Here are the top 10 most vulnerable apps in 2007 published by Bit9, an endpoint security company.

1. Yahoo! Messenger 8.1.0.239 and earlier
2. Apple QuickTime 7.2
3. Mozilla Firefox 2.0.0.6
4. Microsoft Windows Live (MSN) Messenger 7.0, 8.0
5. EMC VMware Player (and other products) 2.0, 1.0.4
6. Apple iTunes 7.3.2
7. Intuit QuickBooks Online Edition 9 and earlier
8. Sun Java Runtime 1.6.0_X
9. Yahoo! Widgets 4.0.5 and previous
10. Ask.com Toolbar 4.0.2.53 and previous

Among the qualifying criteria is that it must be able to run on Microsoft Windows platform and be a well known consumer application, downloaded by individuals.

It's interesting to note that Yahoo (Messenger, Widgets) and Apple (Quicktime, iTunes) related software each appears twice while Microsoft, with its extensive scope and distribution of software is only represented by MSN Messenger. Go figure.

Posted by andreyee in |Digg This|Add to del.icio.us

Trackback Pings

TrackBack URL for this entry:
http://www.ebizq.net/mt/mt-tb.cgi/2834

Comments

This looks more like the list of the 10 most superfluous applications. And even though IE is part of the OS, it's quite a headscratcher why it's missing on this list.

This is the first time I hear about "Bit9" and I suspect that was already the whole purpose of that list. Honestly, I can't find anything there that we didn't know already?

Posted by: E.J.Hoover at November 30, 2007 10:45 PM

Post a comment




Remember Me?

(you may use HTML tags for style)

We ask that you type your code (displayed below) in the text box.This code is an image that cannot be read by a machine. It prevents automated programs from submitting comments.


Code:



Most Recent ebizQ Blog Entries
ADVERTISEMENT
RSS Subscription

Blog Roll
This Work
Accountability:The opinions expressed in this blog are solely representative of the blog's author, and not of ebizQ

Subscribe to our Newsletters
ebizQ Weekly Gold Club Update
Live Webinar Updates
Updates from ebizQ Partners
ebizQ SOA Update
ebizQ BPM Update
ebizQ Security Update
ebizQ BI Update
ebizQ Open Source Software Update
Virtual Show Newsletter
Your E-mail Address:
BAM: The Killer App for CEP
Date: Feb 12, 2008
Time: 12:00 PM ET
(17:00 GMT)

I WANT TO ATTEND
Event Processing Market Pulse
Date: Feb 14, 2008
Time: 12:00 PM ET
(17:00 GMT)

I WANT TO ATTEND
Archived Webinars | Upcoming Webinars

Marketing Solutions | Feedback | About ebizQ | Unsubscribe | Privacy Policy | Site Map