Surprise! Flash Is Not 2015's Most Insecure Software

frogboy

In memoriam 1961-2018
Thread author
Verified
Top Poster
Well-known
Jun 9, 2013
6,720
Flash ranks only 3rd in 2015's most vulnerable software list
Now that 2015 has officially ended let's take a retrospective look over what happened during the past year when it comes to critical or highly critical security vulnerabilities.

During the past 365 days, independent security researchers, cyber-security firms, and even the makers of various software themselves have reported security vulnerabilities, and when necessary, have asked for a CVE (Common Vulnerabilities and Exposures) identifier.

These CVE numbers are used to track security flaws across products and time, and if you hang around infosec circles long enough, you understand how crucial they can be to a security researcher's work.

Apple - the company with the most security bugs in 2015
According to CVE Details, a website that manages an inventory of security vulnerabilities based on their CVE identifiers, during 2015, the company for which the most new CVE numbers have been assigned was Apple.

Security researchers discovered 654 security flaws in Apple's products, 83 more security bugs than Microsoft's total of 571 vulnerabilities, the company that came in second.

Full article. Surprise! Flash Is Not 2015's Most Insecure Software
 

jamescv7

Level 85
Verified
Honorary Member
Mar 15, 2011
13,070
Simply because the target for widely audience are sometimes adjusted plus mere fact that daily patches reduces future vulnerabilities as possible.

Considering to OS X that even though the kernel is Linux but many are discovered as future risks since not so many current attacks occur.
 

Cats-4_Owners-2

Level 39
Verified
Honorary Member
Top Poster
Well-known
Dec 4, 2013
2,800
What were Apple's worst? My only Apple things are QuickTime and ITunes, seldom used by me.
conceptualclarity, my guess which was confirmed upon reading jamescv7's comments was Apple's Operating Systems were listed with the most vulnerabilities.
@jamescv7's words:
  • "...even though the kernel is Linux but many are discovered as future risks since not so many current attacks occur."

...although I should read the whole article!:)

Edit: Done. James did read it first.:D

This is why Apple wins the booby prize.:confused:

  • "As for software products, an Apple product won this title too, with the OS X operating system coming first with 384 security bugs, and iOS coming in second, with 375 bugs."
 
Last edited:

Cats-4_Owners-2

Level 39
Verified
Honorary Member
Top Poster
Well-known
Dec 4, 2013
2,800
If OS X and ios maintain their 1st and 2nd position in security bugs then I'm surprised why Apple claim that they have' best OS (security wise).

Question: Does a greater number of vulnerabilities define an operating system as "less"
secure?o_O

Answer: :rolleyes:It depends...
  • Yes, compromised:confused: = vulnerabilities are exploited &/or not patched in a timely way.
  • No , secure:cool: = security holes are announced, repaired, & patched promptly through security updates.
Tabeer, similarly to many Antivirus software companies, Apple (among others) shall continue to claim they develop "The Best" (most secure) operating systems. What makes any OS most secure is You.:)
 
Last edited:

DracusNarcrym

Level 20
Verified
Top Poster
Well-known
Oct 16, 2015
970
And so we arrive to the most definite conclusion so far, regarding computer security:

Nothing is natively secure, and even after proper modifications and/or configuration, no one and nothing can guarantee total invincibility/invulnerability.

The most tested method for rendering an endpoint system ALMOST invulnerable is combined security layers AND safe computing habits.

- - -

It was about time Apple's vulnerabilities were given a chance to be made known to the general public.
 

frogboy

In memoriam 1961-2018
Thread author
Verified
Top Poster
Well-known
Jun 9, 2013
6,720
And so we arrive to the most definite conclusion so far, regarding computer security:

Nothing is natively secure, and even after proper modifications, no one and nothing can guarantee total invincibility/invulnerability.

The most tested method of rendering an endpoint system ALMOST invulnerable is combined security layers AND safe computing habits.

- - -

It was about time Apple's vulnerabilities were given a chance to be made known to the general public.
That is very well said my friend. ;)
 

jamescv7

Level 85
Verified
Honorary Member
Mar 15, 2011
13,070
A simple logic, more vulnerabilities then more active in the development; as we all know everything were done on computers which never stops to improve. Cause that's one thing where users are interested for... And that's from the updates provided by developers as there may be something new that has been added or improved.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top