<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Microsoft Security Blog</title><link>http://blogs.technet.com/b/security/</link><description>The official Microsoft blog for discussing industry and Microsoft security topics.</description><dc:language>en-US</dc:language><generator>Telligent Evolution Platform Developer Build (Build: 5.6.50428.7875)</generator><item><title>Cloud Computing Trends Report : Maturity of IT Departments</title><link>http://blogs.technet.com/b/security/archive/2013/05/23/cloud-computing-trends-report-maturity-of-it-departments.aspx</link><pubDate>Thu, 23 May 2013 15:03:23 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3574421</guid><dc:creator>Jeff Jones - MSFT</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/rsscomments.aspx?WeblogPostID=3574421</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/commentapi.aspx?WeblogPostID=3574421</wfw:comment><comments>http://blogs.technet.com/b/security/archive/2013/05/23/cloud-computing-trends-report-maturity-of-it-departments.aspx#comments</comments><description>As cloud computing matures, a growing number of organizations are interested in moving to cloud environments to help lower IT costs, increase efficiencies, and realize greater flexibility. However, organizations that consider cloud computing have also...(&lt;a href="http://blogs.technet.com/b/security/archive/2013/05/23/cloud-computing-trends-report-maturity-of-it-departments.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3574421" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/security/archive/tags/Studies/">Studies</category><category domain="http://blogs.technet.com/b/security/archive/tags/Cloud+Security/">Cloud Security</category><category domain="http://blogs.technet.com/b/security/archive/tags/Cloud+Computing/">Cloud Computing</category><category domain="http://blogs.technet.com/b/security/archive/tags/Cloud+Security+Alliance/">Cloud Security Alliance</category><category domain="http://blogs.technet.com/b/security/archive/tags/Security+Intelligence/">Security Intelligence</category><category domain="http://blogs.technet.com/b/security/archive/tags/Cloud+Security+Readiness+Tool/">Cloud Security Readiness Tool</category></item><item><title>Attention Students: Only 3 Weeks Left to Enter the Cybersecurity 2020 Essay Contest</title><link>http://blogs.technet.com/b/security/archive/2013/05/23/attention-students-3-weeks-left-for-cybersecurity-2020-essay-contest.aspx</link><pubDate>Thu, 23 May 2013 12:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3574017</guid><dc:creator>Microsoft Security Staff</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/rsscomments.aspx?WeblogPostID=3574017</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/commentapi.aspx?WeblogPostID=3574017</wfw:comment><comments>http://blogs.technet.com/b/security/archive/2013/05/23/attention-students-3-weeks-left-for-cybersecurity-2020-essay-contest.aspx#comments</comments><description>&lt;p&gt;Are you working on cutting edge research on the future of cybersecurity policy? If so, you have less than&amp;nbsp;3 weeks left to enter our Cybersecurity 2020 essay contest for a chance to win the &lt;a href="http://www.microsoft.com/security/gssd/contest.aspx"&gt;$5,000 cash prize&lt;/a&gt;!&amp;nbsp; &lt;a href="/b/security/archive/2013/05/22/attention-students-3-weeks-left-for-cybersecurity-2020-essay-contest.aspx"&gt;Read more&lt;/a&gt;.&lt;/p&gt;...(&lt;a href="http://blogs.technet.com/b/security/archive/2013/05/23/attention-students-3-weeks-left-for-cybersecurity-2020-essay-contest.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3574017" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/security/archive/tags/Students/">Students</category><category domain="http://blogs.technet.com/b/security/archive/tags/Cybersecurity+Essay+Contest/">Cybersecurity Essay Contest</category><category domain="http://blogs.technet.com/b/security/archive/tags/Cash+Prize/">Cash Prize</category></item><item><title>Microsoft's Perspective on Incentives to Adopt Improved Cybersecurity Practices</title><link>http://blogs.technet.com/b/security/archive/2013/05/21/microsoft-s-perspective-on-incentives-to-adopt-improved-cybersecurity-practices.aspx</link><pubDate>Tue, 21 May 2013 09:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3573909</guid><dc:creator>Paul Nicholas - TwC</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/rsscomments.aspx?WeblogPostID=3573909</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/commentapi.aspx?WeblogPostID=3573909</wfw:comment><comments>http://blogs.technet.com/b/security/archive/2013/05/21/microsoft-s-perspective-on-incentives-to-adopt-improved-cybersecurity-practices.aspx#comments</comments><description>&lt;p&gt;Last month my blog post discussed Microsoft&amp;rsquo;s perspective on building a Cybersecurity Framework for critical infrastructure, which is part of President Obama&amp;rsquo;s Executive Order on cybersecurity.&amp;nbsp; As a next step in the process of implementing the Executive Order, &lt;a href="http://www.ntia.doc.gov/federal-register-notice/2013/notice-inquiry-incentives-adopt-improved-cybersecurity-practices-html"&gt;the Commerce Department recently requested comments&lt;/a&gt; regarding incentives to encourage critical infrastructure entities and others to adopt improved cybersecurity practices.&amp;nbsp; These incentives would be aimed at encouraging participation in a new voluntary program (referred to as the Voluntary Program below) to support the adoption by owners and operators of critical infrastructure and other interested entities of the Cybersecurity Framework being developed by the National Institute of Standards and Technology (NIST).&lt;/p&gt;
&lt;p&gt;Last week, Microsoft &lt;a href="http://www.ntia.doc.gov/files/ntia/microsoft_response.pdf"&gt;submitted comments&lt;/a&gt; to the Commerce Department about these incentives.&amp;nbsp; Before discussing Microsoft&amp;rsquo;s&amp;nbsp; comments, it is important to acknowledge that the Commerce Department has led an ongoing public discussion about how to incent broader adoption of cybersecurity practices, reaching back to Commerce&amp;rsquo;s&lt;a href="http://www.nist.gov/itl/upload/Cybersecurity_Green-Paper_FinalVersion.pdf"&gt; Green Paper on Cybersecurity, Innovation, and the Internet Economy&lt;/a&gt; and our comments both &lt;a href="http://www.nist.gov/itl/upload/Microsoft_Cybersecurity-NOI-Comments_9-20-10.pdf"&gt;prior&lt;/a&gt; and &lt;a href="http://www.nist.gov/itl/upload/Cybersecurity_Green-Paper_FinalVersion.pdf"&gt;subsequent&lt;/a&gt; to the Green Paper.&amp;nbsp; We appreciate the Commerce Department&amp;rsquo;s consistent focus on the important challenge of creating incentives to increase cybersecurity.&amp;nbsp;&lt;a href="/b/security/archive/2013/05/21/microsoft-s-perspective-on-incentives-to-adopt-improved-cybersecurity-practices.aspx"&gt;Read more&lt;/a&gt;&lt;/p&gt;...(&lt;a href="http://blogs.technet.com/b/security/archive/2013/05/21/microsoft-s-perspective-on-incentives-to-adopt-improved-cybersecurity-practices.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3573909" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/security/archive/tags/Government/">Government</category><category domain="http://blogs.technet.com/b/security/archive/tags/Cybersecurity/">Cybersecurity</category><category domain="http://blogs.technet.com/b/security/archive/tags/Commerce+Department/">Commerce Department</category><category domain="http://blogs.technet.com/b/security/archive/tags/Executive+Order/">Executive Order</category></item><item><title>Are Viruses Making a Comeback?</title><link>http://blogs.technet.com/b/security/archive/2013/05/16/are-viruses-making-a-comeback.aspx</link><pubDate>Thu, 16 May 2013 12:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3572076</guid><dc:creator>Tim Rains - Microsoft</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/rsscomments.aspx?WeblogPostID=3572076</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/commentapi.aspx?WeblogPostID=3572076</wfw:comment><comments>http://blogs.technet.com/b/security/archive/2013/05/16/are-viruses-making-a-comeback.aspx#comments</comments><description>&lt;p&gt;In the six or seven years that we have been publishing the &lt;a href="http://www.microsoft.com/sir"&gt;Microsoft Security Intelligence Report&lt;/a&gt; (SIR) I have seen many trends emerge over time.&amp;nbsp; The threat landscape is constantly changing as attackers try to find methods that will help them compromise the systems they target.&amp;nbsp; For several years viruses (file infectors) seemed to be out of favor with attackers as they used other categories of threats to attack systems.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Viruses simply didn&amp;rsquo;t support the profit motive many attackers had in the same way that Trojan Downloaders and Droppers, Miscellaneous Trojans, and Password Stealers and Monitoring Tools all did.&amp;nbsp; Viruses are threats designed in an era before ubiquitous Internet connectivity made it easier for Worms to successfully self-propagate.&amp;nbsp; Worms like SQL Slammer and Blaster spread around the world in minutes.&amp;nbsp; This would likely take an old fashioned file-infector much, much longer to accomplish, limiting their ability to infect large numbers of systems quickly.&amp;nbsp; Additionally, Viruses tend to be relatively &amp;ldquo;noisy&amp;rdquo; threats as they typically try to infect large numbers of files (.exe, .dll, .scr) on the systems they compromise.&amp;nbsp; This characteristic can make them easier to detect than other more blended threats.&lt;/p&gt;
&lt;p&gt;Subsequently, I have rarely seen the Virus threat category found on more than 5 percent of systems with detections globally.&amp;nbsp; There have been regional exceptions like Korea, Russia, and Brazil, where I have seen relative Virus levels reach between 10 and 15 percent.&amp;nbsp; But more recently I have noticed that Viruses seem to be making a comeback.&amp;nbsp; As seen in Figure 1, the relative prevalence of Viruses has been trending up.&amp;nbsp; The prevalence worldwide for the Virus threat category was 7.8 percent in the fourth quarter of 2012 (4Q12).&amp;nbsp; &lt;a href="/b/security/archive/2013/05/16/are-viruses-making-a-comeback.aspx"&gt;Read more.&lt;/a&gt;&lt;/p&gt;...(&lt;a href="http://blogs.technet.com/b/security/archive/2013/05/16/are-viruses-making-a-comeback.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3572076" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/security/archive/tags/Threat+Intelligence/">Threat Intelligence</category><category domain="http://blogs.technet.com/b/security/archive/tags/SIRv14/">SIRv14</category><category domain="http://blogs.technet.com/b/security/archive/tags/Security+Intelligence+Report+Volume+14/">Security Intelligence Report Volume 14</category><category domain="http://blogs.technet.com/b/security/archive/tags/Viruses/">Viruses</category></item><item><title>Security Development Conference 2013 - Kick Off</title><link>http://blogs.technet.com/b/security/archive/2013/05/14/security-development-conference-2013.aspx</link><pubDate>Tue, 14 May 2013 08:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3571447</guid><dc:creator>Tim Rains - Microsoft</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/rsscomments.aspx?WeblogPostID=3571447</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/commentapi.aspx?WeblogPostID=3571447</wfw:comment><comments>http://blogs.technet.com/b/security/archive/2013/05/14/security-development-conference-2013.aspx#comments</comments><description>&lt;p&gt;This morning at the &lt;a href="http://www.securitydevelopmentconference.com/"&gt;Security Development Conference&lt;/a&gt; in San Francisco, I am joined by hundreds of organizations that have traveled from all over the world to learn more about proven practices in security development that can help reduce an organization&amp;rsquo;s risk to threats on the Internet.&amp;nbsp; As we anxiously await the two keynotes by &lt;a href="http://www.securitydevelopmentconference.com/topic/details/key001"&gt;Scott Charney&lt;/a&gt; and &lt;a href="http://www.securitydevelopmentconference.com/topic/details/key004"&gt;Howard Schmidt&lt;/a&gt; to kick off the day, I am reminded of the early days of computing when security development was an afterthought for many organizations.&lt;/p&gt;
&lt;p&gt;The threat landscape has evolved quite a bit over the past decade and the importance of software security is more evident than ever.&amp;nbsp; To see so many security professionals in attendance at this year&amp;rsquo;s conference makes me cautiously optimistic that more and more organizations are starting to take application security seriously.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Despite the growing awareness on the need for application security, adoption numbers remain low.&amp;nbsp; A recent Microsoft survey found that only 37% of IT Professionals worldwide cited their organizations&amp;nbsp;as building their products and services with security in mind. In that same study, 61% of developers were not taking advantage of mitigation technologies that already exist such as ASLR, SEHOP and DEP.&amp;nbsp; The three biggest roadblocks cited by IT professions and developers were management approval, lack of support and training and cost.&amp;nbsp;&lt;a href="/b/security/archive/2013/05/08/security-development-conference-2013.aspx"&gt;Read more&lt;/a&gt;&lt;/p&gt;...(&lt;a href="http://blogs.technet.com/b/security/archive/2013/05/14/security-development-conference-2013.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3571447" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/security/archive/tags/SDC2013/">SDC2013</category><category domain="http://blogs.technet.com/b/security/archive/tags/Security+Development+Conference/">Security Development Conference</category><category domain="http://blogs.technet.com/b/security/archive/tags/Declaration+of+Conformity/">Declaration of Conformity</category><category domain="http://blogs.technet.com/b/security/archive/tags/ISO_2F00_IEC+27034_2D00_1/">ISO/IEC 27034-1</category><category domain="http://blogs.technet.com/b/security/archive/tags/ISO/">ISO</category></item><item><title>Microsoft Security Intelligence Report volume 14 on the Road: Japan</title><link>http://blogs.technet.com/b/security/archive/2013/05/06/sir-on-the-road-japan.aspx</link><pubDate>Mon, 06 May 2013 08:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3567944</guid><dc:creator>Tim Rains - Microsoft</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/rsscomments.aspx?WeblogPostID=3567944</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/commentapi.aspx?WeblogPostID=3567944</wfw:comment><comments>http://blogs.technet.com/b/security/archive/2013/05/06/sir-on-the-road-japan.aspx#comments</comments><description>&lt;p&gt;I was in Tokyo a couple of weeks back, talking to people about the latest &lt;a href="http://www.microsoft.com/sir"&gt;Microsoft Security Intelligence Report&lt;/a&gt;.&amp;nbsp; According to the report, Japan continues to have one of the lowest malware infection rates in the world, as seen in Figure 1.&amp;nbsp; The Microsoft Malicious Software Removal Tool (MSRT) found just 0.7 systems infected with malware for every 1,000 systems scanned in the fourth quarter of 2012.&amp;nbsp; The worldwide average was 6.0 during the same period.&lt;/p&gt;
&lt;p&gt;&lt;a href="/b/security/archive/2013/04/19/sir-on-the-road-japan.aspx"&gt;Read more&lt;/a&gt;.&lt;/p&gt;...(&lt;a href="http://blogs.technet.com/b/security/archive/2013/05/06/sir-on-the-road-japan.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3567944" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/security/archive/tags/Japan/">Japan</category><category domain="http://blogs.technet.com/b/security/archive/tags/threat+landscape/">threat landscape</category><category domain="http://blogs.technet.com/b/security/archive/tags/SIRv14/">SIRv14</category><category domain="http://blogs.technet.com/b/security/archive/tags/Microsoft+Security+Intelligence+Report+Volume+14/">Microsoft Security Intelligence Report Volume 14</category></item><item><title>REGISTER NOW FOR SDC 2013 AND SAVE!</title><link>http://blogs.technet.com/b/security/archive/2013/05/01/register-now-for-sdc-2013-and-save.aspx</link><pubDate>Wed, 01 May 2013 18:26:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3570222</guid><dc:creator>Microsoft Security Staff</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/rsscomments.aspx?WeblogPostID=3570222</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/commentapi.aspx?WeblogPostID=3570222</wfw:comment><comments>http://blogs.technet.com/b/security/archive/2013/05/01/register-now-for-sdc-2013-and-save.aspx#comments</comments><description>&lt;p&gt;In less than&amp;nbsp;two weeks, the world&amp;rsquo;s best and brightest security professionals will converge on the InterContinental Hotel San Francisco, CA for the&amp;nbsp;&lt;strong&gt;Security Development Conference&lt;/strong&gt;! Don&amp;rsquo;t miss this opportunity to hear from industry experts who will discuss current security topics and issues.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.securitydevelopmentconference.com/registration"&gt;REGISTER NOW&lt;/a&gt; using this discount code: &lt;a href="mailto:IND@SDC#12"&gt;IND@SDC#12&lt;/a&gt;&amp;nbsp;and &lt;span style="text-decoration: underline;"&gt;save $300 off current registration prices&lt;/span&gt;.&amp;nbsp; For more information, visit&amp;nbsp;the website at &lt;a href="http://www.securitydevelopmentconference.com"&gt;www.securitydevelopmentconference.com&lt;/a&gt; or contact &lt;a href="mailto:sdc@eventpoint.com"&gt;sdc@eventpoint.com&lt;/a&gt;&lt;/p&gt;...(&lt;a href="http://blogs.technet.com/b/security/archive/2013/05/01/register-now-for-sdc-2013-and-save.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3570222" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/security/archive/tags/SDC2013/">SDC2013</category><category domain="http://blogs.technet.com/b/security/archive/tags/Security+Development+Conference/">Security Development Conference</category></item><item><title>Anti-virus Software is Dead…Really?</title><link>http://blogs.technet.com/b/security/archive/2013/04/18/anti-virus-software-is-dead-really.aspx</link><pubDate>Thu, 18 Apr 2013 07:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3566518</guid><dc:creator>Tim Rains - Microsoft</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/rsscomments.aspx?WeblogPostID=3566518</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/commentapi.aspx?WeblogPostID=3566518</wfw:comment><comments>http://blogs.technet.com/b/security/archive/2013/04/18/anti-virus-software-is-dead-really.aspx#comments</comments><description>&lt;p&gt;Yesterday&amp;nbsp;we released the latest volume of the &lt;a href="http://www.microsoft.com/sir"&gt;Microsoft Security Intelligence Report&lt;/a&gt;. Among the ~800 pages of new threat intelligence is a new study that attempts to quantify the benefit of running up-to-date anti-virus (AV) software.&amp;nbsp; &lt;strong&gt;The study leveraged data from over a billion systems worldwide and it turns out that systems that do not have up-to-date AV are 5.5 times more likely to be infected with malware than systems that are protected.&amp;nbsp;&lt;/strong&gt; It&amp;rsquo;s also noteworthy that almost 270 million systems worldwide did not have up-to-date AV installed in the second half of 2012; many people that could be benefiting from the protection that AV offers, are not.&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;&lt;span style="text-decoration: underline;"&gt;Didn&amp;rsquo;t we already know this?&lt;/span&gt;&lt;/strong&gt;&lt;br /&gt;While it might seem like common sense that AV software is a good thing to have, I think much of the evidence I have seen to support this notion has mostly been anecdotal.&amp;nbsp; I have attended and spoken at numerous security industry conferences over the past couple of years where I have heard more and more industry security experts question the efficacy of AV.&amp;nbsp; The typical argument against AV is the erroneous assumption that since it can&amp;rsquo;t block or detect 100% of threats, including some of the high-profile targeted attacks that have been reported over the last few years, then it&amp;rsquo;s entirely worthless and not worth running.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;To me, this point of view seems less than pragmatic as part of the challenge the industry has is to protect the billions of devices that are now continuously connected to the Internet from the flood of new threats that continually emerge.&amp;nbsp; Since both the number of connected devices and the number of threats will only increase in the future, how to scale protections will always be important.&amp;nbsp; More and more attackers are using automation and sophisticated techniques like server-side polymorphism to generate massive numbers of threats; Figure 1 below illustrates the estimated growth of malware since 1991 and Figure 2 shows 29,451,883 computers had detections/removals of malware in the ten most active countries in the 90 days of the fourth quarter of 2012 alone.&amp;nbsp; In this type of environment AV is becoming more important, not less important.&amp;nbsp;&lt;a href="/b/security/archive/2013/04/18/anti-virus-software-is-dead-really.aspx"&gt;Read more&lt;/a&gt;.&lt;/p&gt;...(&lt;a href="http://blogs.technet.com/b/security/archive/2013/04/18/anti-virus-software-is-dead-really.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3566518" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/security/archive/tags/Antivirus/">Antivirus</category><category domain="http://blogs.technet.com/b/security/archive/tags/Antimalware/">Antimalware</category><category domain="http://blogs.technet.com/b/security/archive/tags/SIRv14/">SIRv14</category><category domain="http://blogs.technet.com/b/security/archive/tags/Microsoft+Security+Intelligence+Report+Volume+14/">Microsoft Security Intelligence Report Volume 14</category></item><item><title>Volume 14 of the Microsoft Security Intelligence Report Released: Hundreds of Pages of New Security Intelligence Now Available</title><link>http://blogs.technet.com/b/security/archive/2013/04/17/volume-14-of-the-microsoft-security-intelligence-report-released-hundreds-of-pages-of-new-security-intelligence-now-available.aspx</link><pubDate>Wed, 17 Apr 2013 07:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3566522</guid><dc:creator>Tim Rains - Microsoft</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/rsscomments.aspx?WeblogPostID=3566522</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/commentapi.aspx?WeblogPostID=3566522</wfw:comment><comments>http://blogs.technet.com/b/security/archive/2013/04/17/volume-14-of-the-microsoft-security-intelligence-report-released-hundreds-of-pages-of-new-security-intelligence-now-available.aspx#comments</comments><description>&lt;p&gt;We released the latest volume of the Microsoft Security Intelligence Report today that provides a large body of new data and analysis on the threat landscape.&amp;nbsp; Volume 14 focuses on what the threat landscape looked like in the second half of 2012, including trend data from previous periods.&amp;nbsp; This volume of the report contains:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Industry-wide vulnerability disclosure trends and analysis&lt;/li&gt;
&lt;li&gt;An examination of global vulnerability exploit activity&lt;/li&gt;
&lt;li&gt;Trends and analysis on global malware and potentially unwanted software&lt;/li&gt;
&lt;li&gt;The latest analysis of &lt;em&gt;&lt;strong&gt;threats in more than 100 countries/regions&lt;/strong&gt;&lt;/em&gt; around the world&lt;/li&gt;
&lt;li&gt;Data and insights on how attackers are using spam and other email threats&lt;/li&gt;
&lt;li&gt;The latest global and regional data on malicious websites including phishing sites, malware hosting sites and drive-by download sites&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;In addition, we have included a section in the report focused on quantifying the value of using up-to-date antimalware software.&amp;nbsp; This is a must read for those Information Technology/security professionals who are grappling with the challenge of articulating why investing in antimalware software is so important to the security of their organization, possibly among those questioning its efficacy.&lt;/p&gt;
&lt;p&gt;I encourage you to download the new SIR and take full advantage of the new research it contains as well as the hundreds of pages of new threat intelligence.&amp;nbsp; We also have a shorter Key Findings Summary available, new video content, and past volumes of the report, all at &lt;a href="http://www.microsoft.com/sir"&gt;www.microsoft.com/sir&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Tim Rains&lt;br /&gt;Director&lt;br /&gt;Trustworthy Computing&lt;/p&gt;...(&lt;a href="http://blogs.technet.com/b/security/archive/2013/04/17/volume-14-of-the-microsoft-security-intelligence-report-released-hundreds-of-pages-of-new-security-intelligence-now-available.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3566522" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/security/archive/tags/SIRv14/">SIRv14</category><category domain="http://blogs.technet.com/b/security/archive/tags/Microsoft+Security+Intelligence+Report+Volume+14/">Microsoft Security Intelligence Report Volume 14</category></item><item><title>Malicious Websites Now the Top Threat to the Enterprise</title><link>http://blogs.technet.com/b/security/archive/2013/04/17/malicious-websites-now-the-top-threat-to-the-enterprise.aspx</link><pubDate>Wed, 17 Apr 2013 07:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3566517</guid><dc:creator>Tim Rains - Microsoft</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/rsscomments.aspx?WeblogPostID=3566517</wfw:commentRss><wfw:comment xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/security/commentapi.aspx?WeblogPostID=3566517</wfw:comment><comments>http://blogs.technet.com/b/security/archive/2013/04/17/malicious-websites-now-the-top-threat-to-the-enterprise.aspx#comments</comments><description>&lt;p&gt;For the past three and a half years, Win32/Conficker has been the top threat found in enterprise environments.&amp;nbsp; We have reported on Conficker in the Microsoft Security Intelligence Report since the second half of 2008.&amp;nbsp; No new variants of Conficker have been released in years and the methods it uses to propagate are well known, but once it finds its way into an environment it can be difficult to eliminate it.&lt;/p&gt;
&lt;p&gt;New data just published in volume 14 of the report, focused on the second half of 2012 (2H12), shows that Conficker has competition as the number one threat in enterprise environments.&amp;nbsp; Figure 1 shows that JS/IframeRef was encountered by more computers than Conficker in the second (2Q12) and fourth (4Q12) quarters of 2012.&amp;nbsp; &lt;a href="http://www.microsoft.com/security/portal/threat/encyclopedia/Entry.aspx?Name=Trojan%3aJS%2fIframeRef"&gt;IframeRef &lt;/a&gt;was detected almost 3.3 million times in 4Q12.&amp;nbsp; JS/IframeRef is a malicious piece of JavaScript code that is presented on infected or malicious websites.&amp;nbsp; The purpose of the script is to redirect your browser to other sites that attempt to download malware onto your computer, often by exploiting unpatched software vulnerabilities.&amp;nbsp;&lt;a href="/b/security/archive/2013/04/17/malicious-websites-now-the-top-threat-to-the-enterprise.aspx"&gt;Read more&lt;/a&gt;..&lt;/p&gt;...(&lt;a href="http://blogs.technet.com/b/security/archive/2013/04/17/malicious-websites-now-the-top-threat-to-the-enterprise.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3566517" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/security/archive/tags/Microsoft+Security+Intelligence+Report/">Microsoft Security Intelligence Report</category><category domain="http://blogs.technet.com/b/security/archive/tags/SIRv14/">SIRv14</category><category domain="http://blogs.technet.com/b/security/archive/tags/Web_2D00_based+Attacks/">Web-based Attacks</category><category domain="http://blogs.technet.com/b/security/archive/tags/IframeRef/">IframeRef</category><category domain="http://blogs.technet.com/b/security/archive/tags/Enterprise+Threats/">Enterprise Threats</category><category domain="http://blogs.technet.com/b/security/archive/tags/Conficker/">Conficker</category></item></channel></rss>