Apparently we release a report twice a year on the status of computer security:  vulnerabilities, malware, spyware, etc.  The report for the first half of this year was just released.

I only read the findings summary but found a couple items in it interesting:

  • The Total number of vulnerabilities disclosed this period is actually down from the previous six months.  However, the number of vulnerabilities considered High Severity continues to go rise.
  • The number of vulnerabilities with exploit code publicly available dropped.  Either the vulns are harder to reproduce reliably, or exploit developers are privately contacting vendors, instead of publicly announcing exploits
  • Newer products have fewer vulnerabilities.  Our security push is showing progress.

 

Go security guys, go!