Original URL: http://www.theregister.co.uk/2007/02/07/symantec_thompson_microsoft/
RSA Symantec's chief executive has lambasted Microsoft for a dangerous conflict of interest as both the provider of an operating system and seller of software designed to secure its users.
John Thompson effectively blamed Microsoft for damaging consumers' confidence in the internet by going it alone and providing its own security for Windows Vista.
Thompson drew applause from an audience of his peers at the RSA Conference in San Francisco, barely an hour after Microsoft's Bill Gates and chief research and strategy officer Craig Mundie opened the annual event in stately - if unexciting - fashion. Gates and Mundie said the challenge for the industry lays in protecting users of Windows Vista and Office 2007 against their own mistakes.
As with its Windows XP predecessor, which went on to be mercilessly hacked, Microsoft claims its latest operating system is its most secure yet. Microsoft has founded this claim on the Patchguard architecture once used in 64-bit editions of Windows XP, which grants only partial access to the Widows kernel, and on Windows Live OneCare to keep PC users' anti-virus protection up to date.
Security vendors including Symantec, though, have criticized Patchguard for granting them only partial access to the Windows kernel and for leaving the job of protecting Windows against new threats to Microsoft. At best, Microsoft has an unproven track record in providing security software, while at worst Microsoft itself is seen as the very cause of the security problems in Windows.
Thompson said e-commerce risks not reaching its full potential if consumers continue to lack confidence in the online world.
Thompson stressed the need for co-operation between security companies and customers to build confidence by detecting threats and building secure systems, adding "no-one" company can secure the entire online world.
He didn't name Microsoft, but he didn't have to as he substituted the words "operating system" for "operating platform."
Thompson told RSA delegates: "You wouldn't want the company that is keeping your books to audit your books. The same logic should apply. You wouldn't want the company that created your company's operating platform to be the one that is securing it from a broad range of threats. It's a huge conflict of interest."
"We understand we are all in this together," he said.
Thompson was quoted (http://www.networkworld.com/news/2006/062706-symantec-ceo-microsoft-has-long.html) in 2006 saying he was more concerned about Microsoft's lack of experience in security than the threat of potential competition to Symantec. The company last month, though, announced $200m in cost-cutting measures after warning revenue and profits will drop in the face of free and low-cost security products from companies like Microsoft.®
Rivals dismiss MS Forefront security push (3 May 2007)
http://www.theregister.co.uk/2007/05/03/ms_forefront/
Microsoft super sizes multi-threaded tripe (1 May 2007)
http://www.theregister.co.uk/2007/05/01/mundie_mundie/
Symantec buys compliance firm (9 March 2007)
http://www.theregister.co.uk/2007/03/09/symantec_buys_british/
Veritas man jumps Symantec ship (27 February 2007)
http://www.theregister.co.uk/2007/02/27/burton_4_serena/
Vista security overview: too little too late (20 February 2007)
http://www.theregister.co.uk/2007/02/20/vista_security_oversold/
Vista first look: Bugs and confusion (14 February 2007)
http://www.theregister.co.uk/2007/02/14/pricey_beta_bugger/
Vista-effect credited with PC sales boost (9 February 2007)
http://www.theregister.co.uk/2007/02/09/vista_ups_pc_sales/
Symantec reaches endpoint with $830m Altiris (29 January 2007)
http://www.theregister.co.uk/2007/01/29/symantec_altiris_enterprise_vault/
Symantec plans $200m worth of cuts (25 January 2007)
http://www.theregister.co.uk/2007/01/25/symantec_results/
Security rivals tried to 'castrate' Vista - Gates (10 November 2006)
http://www.theregister.co.uk/2006/11/10/vista_castration_averted/
Symantec readies Backup Exec for Vista (2 November 2006)
http://www.channelregister.co.uk/2006/11/02/symantec_backup_exec11d/
Security firm punctures Vista's Patchguard (27 October 2006)
http://www.theregister.co.uk/2006/10/27/patchguard_row_analysis/
Microsoft promises more info for security firms (19 October 2006)
http://www.theregister.co.uk/2006/10/19/microsoft_promises_more_info/
Ballmer: Microsoft helped security partners on Windows Vista (18 October 2006)
http://www.theregister.co.uk/2006/10/18/ballmer_vista_mcafee_symantec/
Symantec highlights Windows Vista user vulnerabilities (2 August 2006)
http://www.theregister.co.uk/2006/08/02/symantec_windows_vista_security/
Symantec: Vista probably 'less stable' than XP (19 July 2006)
http://www.theregister.co.uk/2006/07/19/vista_security_analysis/
© Copyright 2008