NEW: Microsoft Vulnerabilities Report 2022 - Read the Findings of Our Annual Report Read Now

  • Partners
  • Support
  • Careers
  • English
    • Deutsch
    • français
    • español
    • 한국어
    • português
BeyondTrust
  • Products

    Privileged Password Management

    Discover, manage, audit, and monitor privileged accounts and credentials.

    • Password Safe
    • DevOps Secrets Safe
    • Privileged Access Discovery Application

    Endpoint Privilege Management

    Enforce least privilege across Windows, Mac, Linux, and Unix endpoints.

    • Windows and Mac
    • Unix and Linux
    • Active Directory Bridge

    Secure Remote Access

    Centrally manage remote access for service desks, vendors, and operators.

    • Remote Support
    • Privileged Remote Access
    • Privileged Access Discovery Application

    Cloud Security Management

    Automate the management of identities and assets across your multicloud footprint.

    • Cloud Privilege Broker

    BeyondInsight

    Experience the industry’s most innovative, comprehensive platform for privileged access management.

  • Solutions

    Use Cases

    • Cloud Security
    • Compliance
    • Cyber Insurance
    • Digital Transformation
    • Endpoint Security
    • Operational Technology
    • Ransomware
    • Service Desk Efficiency
    • Zero Trust

    Industry Applications

    • Financial Services
    • Government Agencies
    • Healthcare
    • Law Enforcement
    • Manufacturing
    • Schools & Universities

    Solutions

    The BeyondTrust Privileged Access Management portfolio is an integrated solution that provides visibility and control over all privileged accounts and users.

  • Resources

    Learn

    • Blog
    • Customer Stories
    • Competitor Comparisons
    • Datasheets
    • Videos
    • Glossary
    • Infographics
    • Podcast
    • Whitepapers

    Attend

    • Events
    • Go Beyond
    • Training
    • Webinars

    Support

    • Changelog
    • Professional Services
    • Technical Documentation

    Universal Privilege Management

    Our innovative Universal Privilege Management approach secures every user, asset, and session across your entire enterprise.

  • Company
    • About
    • Leadership
    • Core Values
    • Partners
    • Careers
  • Watch Demo
  • Contact Sales

Microsoft vulnerabilities reach new heights

February 2, 2016

  • Blog
  • Archive
  1. Home
  2. Blog
  3. Microsoft vulnerabilities reach new heights

Annual report from Avecto reveals 52% increase in vulnerabilities in 2015 with almost half deemed critical.

The number of Windows vulnerabilities in 2015 increased by 52% year-on-year, according to new research from security software company, Avecto.

Following analysis of Microsoft security bulletins Avecto discovered that a total of 524 vulnerabilities were reported, with 48% (251) given a critical severity rating.

Microsoft Office products were the subject of 62 of these vulnerabilities, an increase of 210% since 2014. Of these, 16 were classed as critical, meaning that all businesses using the software were potentially vulnerable to attack.

Mark Austin, co-founder and co-CEO at Avecto said: “Given the current state of the security landscape, it’s no surprise that the number of vulnerabilities increases every year, but a large proportion of the business community still remain ignorant to the most effective measures that should be taken in mitigating the risk associated with these vulnerabilities.”

Avecto also found that 27% of the critical vulnerabilities reported last year affected Windows 10, the latest version of the OS that Microsoft had dubbed ‘the most secure Windows ever’.

The risk associated with 82% of critical vulnerabilities affecting Windows 10 and 85% of all the critical vulnerabilities reported in 2015 could be mitigated by removing admin rights from users.

Austin continued: “It’s important that companies remain discerning and don’t just assume that certain platforms are inherently secure because they are popular or new.

“Even the most widespread and up-to-date software can still contain loopholes and all too often it takes weeks or months to rollout a patch. It’s not just Microsoft either, we’ve seen a significant spike in Mac vulnerabilities too.”

Sami Laiho, Windows security expert and Microsoft MVP said the report highlighted once again the need to remove admin rights in an enterprise setting:

“This latest report from Avecto is another wake up call for organisations. If you combine a more than 50% increase in the number of vulnerabilities over 12 months with the fact that both Microsoft and Symantec discovered 250,000 new malware samples every day during the same period, it’s easy to see the size and scale of the problem organisations now face.

“From a hacker’s perspective, getting access to admin rights is like an open door into the corporate network. By having unrestricted admin rights you are essentially inviting malware into your organisation. By removing those rights you are closing that door and locking it, stopping unwanted intruders in their tracks.”

Austin concluded: “It is more important than ever for businesses to enhance their defenses by layering multiple proactive technologies and focus on preventing malware from executing in the first place, as opposed to being over reliant on detection based approaches, which are generally ineffective at dealing with advanced attacks.”

Microsoft Vulnerabilities Report 2015

Download this report to take an in-depth look at the vulnerabilities affecting Internet Explorer, Windows, Office, Windows Server and more.

The report will highlight the clear case for admin rights removal in the enterprise as part of a proactive approach to endpoint security.

Kevin Franks, Marketing Communications Manager

Stay Up To Date

Get the latest news, ideas, and tactics from BeyondTrust. You may unsubscribe at any time.

I agree to receive product related communications from BeyondTrust as detailed in the Privacy Policy, and I may manage my preferences or withdraw my consent at any time.

You May Also Be Interested In:

Whitepapers

IDSA Report: 2022 Trends in Securing Digital Identities

Whitepapers

Microsoft Vulnerabilities Report 2022

Whitepapers

Mapping BeyondTrust Capabilities to NIST Zero Trust (SP 800-207)

Keep up with BeyondTrust

I agree to receive product related communications from BeyondTrust as detailed in the Privacy Policy, and I may manage my preferences or withdraw my consent at any time.

Customer Support
Contact Sales

Products

  • Endpoint Privilege Management
  • Password Management
  • Privileged Remote Access
  • DevOps Secrets Safe
  • Remote Support
  • Cloud Privilege Broker

Resources

  • Blog
  • Case Studies
  • Competitor Comparisons
  • Datasheets
  • Glossary
  • Infographics
  • Podcast
  • Videos
  • Webinars
  • Whitepapers

About

  • Company
  • Careers
  • Contact
  • Events
  • Leadership Team
  • Partner Program
  • Press
BeyondTrust Logo
  • Facebook
  • Twitter
  • LinkedIn
  • Privacy
  • Security
  • Manage Cookies
  • WEEE Compliance

Copyright © 1999 — 2022 BeyondTrust Corporation. All rights reserved. Other trademarks identified on this page are owned by their respective owners. BeyondTrust Corporation is not a chartered bank or trust company, or depository institution. It is not authorized to accept deposits or trust accounts and is not licensed or regulated by any state or federal banking authority.