<tt id="6hsgl"><pre id="6hsgl"><pre id="6hsgl"></pre></pre></tt>
          <nav id="6hsgl"><th id="6hsgl"></th></nav>
          国产免费网站看v片元遮挡,一亚洲一区二区中文字幕,波多野结衣一区二区免费视频,天天色综网,久久综合给合久久狠狠狠,男人的天堂av一二三区,午夜福利看片在线观看,亚洲中文字幕在线无码一区二区
          OPINION> Commentary
          There is a case for strong software liability
          By Bruce Schneier (China Daily)
          Updated: 2008-07-18 07:33

          A recent study of Internet browsers worldwide discovered that more than half - 52 percent - of Internet Explorer users did not have the current version of the software installed.

          For other browsers the numbers were better, but not much: 17 percent of Firefox users, 35 percent of Safari users and 44 percent of Opera users were using an old version.

          This is particularly important because browsers are an increasingly common vector for Internet attacks, and old versions of browsers don't have all their security patches up to date. They are open to attack through vulnerabilities the vendors have already fixed.

          Security professionals are quick to blame users who don't use the latest update and install every patch. "Keeping up is critical for security," they say, and "if someone doesn't update their system, it's their own fault that they get hacked".

          This sounds a lot like blaming the victim: "He should have known not to walk down that deserted street; it's his own fault he was mugged." Of course the victim could have - and quite possibly should have - taken further precautions, but the real blame lies elsewhere.

          It's not as if patching is easy. Even in a corporate setting, systems administrators have trouble keeping up with software patches. There could easily be dozens per week across all operating systems and applications, and far too often they break things.

          Microsoft's Automatic Update feature has automated the process, but that's the exception. Patching is triage, and administrators prioritize it along with everything else they do.

          It's the system that's broken. There's no other industry where shoddy products are sold to a public that expects regular problems, and where consumers are the ones who have to learn how to fix them.

          If an automobile manufacturer has a problem with a car and issues a recall notice, it's a rare occurrence and a big deal - and you can take your car in and get it fixed for free.

          Computers are the only mass-market consumer item that pushes this burden on to consumers, requiring them to have a high level of technical sophistication just to survive.

          It doesn't have to be this way. It is possible to write quality software. It is possible to sell software products that work properly and don't need to be constantly patched. The problem is that it's expensive and time-consuming. Software vendors won't do it, of course, because the marketplace won't reward it.

          The key to fixing this is software liabilities. Computers are also the only mass-market consumer item where the vendors accept no liability for faults. The reason automobiles are so well designed is that manufacturers face liabilities if they screw up.

          A lack of software liability is in effect a vast government subsidy of the computer industry. It allows them to produce more products faster, with less concern about safety, security and quality.

          Last summer, a British parliamentary science and technology committee issued a report on personal Internet security. I was invited to give testimony for that report, and one of my recommendations was that software vendors be held liable when they are at fault.

          Their final report included that recommendation. The government rejected the recommendations last autumn, but this month a report on a follow-up inquiry was issued - which still recommends software liabilities.

          I'm not implying that liabilities are easy, or that all the liability for security vulnerabilities should fall on the vendor. But the courts are good at partial liability.

          Any automobile liability suit has many potential responsible parties: the car, the driver, the road, the weather, possibly another driver and another car and so on.

          Similarly, a computer failure has several parties who may be partially responsible: the software vendor, the computer vendor, the network vendor, the user, possibly a hacker and so on.

          But we're never going to get there until we start. Software liability is the market force that will give companies the incentive to improve their software quality - and everyone's security.

          The author is a security technologist and author: schneier.com/blog

          (China Daily 07/18/2008 page9)

          主站蜘蛛池模板: 国产福利在线观看永久视频| 美欧日韩一区二区三区视频| 亚洲精品区午夜亚洲精品区| 一本一本大道香蕉久在线播放| 天堂mv在线mv免费mv香蕉| 99久久精品国产一区二区暴力| 四虎国产精品永久在线下载| 成人看的污污超级黄网站免费| 亚洲国产成人字幕久久| 久久国产乱子伦免费精品无码 | 人妻激情偷乱视频一区二区三区| 精品久久久久久无码免费| 人人人妻人人澡人人爽欧洲一区| 国产av一区二区麻豆熟女| 精品人妻一区二区三区蜜臀| 花式道具play高h文调教| 久久综合九色综合欧洲98| 最新国产精品剧情在线ss| 亚洲熟妇精品一区二区| 92国产精品午夜福利免费| 欧美人与动zozo| 亚洲综合精品第一页| 久久国产精品免费一区| 日韩一区二区三区日韩精品| 97精品尹人久久大香线蕉| 国产99在线 | 欧美| 国产玩具酱一区二区三区| 婷婷中文字幕| 国产精品视频中文字幕| 久久精品国产主播一区二区| 色伊人久久综合中文字幕| 亚洲男人天堂2021| 欧美色欧美亚洲高清在线视频| 亚洲色一色噜一噜噜噜| 国产av中出一区二区| 女人张开腿让男人桶爽| 国产亚洲精品久久av| 中文字幕无线码中文字幕| 97精品尹人久久大香线蕉| 亚洲熟少妇一区二区三区| 噜噜噜亚洲色成人网站∨|