Super Patch Tuesday highlights limits of program code debugging



(pressebox) London, UK, 15.10.2009,

With no less than 34 security vulnerabilities – eight of them potentially serious – having been solved in the latest ‘super’ Patch Tuesday by Microsoft, this proves we are reaching the limits of the Software Development Life Cycle (SDLC) planning process, says Imperva, the data security specialist.

"Even with the resources that it has, if Microsoft has to issue this many patches for its security updates – breaking the record set back in June – then it’s obvious that the Software Development Life Cycle (SDLC), while important, is imperfect," said Amichai Shulman,

"The fact that Microsoft has broken its own Patch Tuesday record suggests that the software giant has reached the inherent limits of real world software debugging processes," he added.

According to Shulman, the law of big numbers – when applied to the lines of program code in a major application – gives us a non-zero prediction as to the number of software flaws per 1,000 lines of program code.

What this means, he says, is that no matter how much quality assurance you throw at the SDLC process, there is a limit to the effect you can have on the quality of the software application.

And, he explained, what has happened to Microsoft is likely to start happening to other software vendors, as more complex applications are released.

"The prudent use of an SDLC can improve the quality of software, and the security of the information its processing," explained Shulman. "But the threat landscape is extremely dynamic. Companies must have defensive technologies in place to combat immediate threats that SDLCs simply can’t cover."

For more on super Patch Tuesday: http://preview.tinyurl.com/yfs6mfh
For more on Imperva: http://www.imperva.com
Diese Pressemitteilung beobachten

Gerne informieren wir Sie per E-Mail, sobald inaktive Pressemitteilungen vom Herausgeber freigeschaltet werden. Beobachten Sie dazu die entsprechenden Meldungen:

Trackback URL

, , , , , , , , , , , , , , , , , , ,

Für die oben stehende Pressemitteilung ist allein der jeweils angegebene Herausgeber (siehe Quelle Firmenname) verantwortlich. Dieser ist auch grundsätzlich Urheber, sowie auch für jegliche Bilder und weiteren Materialien in dieser Pressemitteilung.

Blogspan.net (Alexander Baumgärtner) übernimmt keine Haftung für die Korrektheit oder Vollständigkeit der dargestellten Meldung. Auch bei Übertragungsfehlern oder anderen Störungen haftet sie nur im Fall von Vorsatz oder grober Fahrlässigkeit.

No Comments on "Super Patch Tuesday highlights limits of program code debugging"

Hi Stranger, leave a comment:

ALLOWED XHTML TAGS:

<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

Subscribe to Comments