, SecurityFocus 2002-01-24
A guide to judging Microsoft's security progress.
Expand all |
Post comment
Results, Not Resolutions
2002-01-24
David Litchfield (2 replies)
David Litchfield (2 replies)
Well, to conclude: Use Java, M$
2002-01-25
Anonymous (1 replies)
Anonymous (1 replies)

Quality assurance methods, long accepted as necessary in the manufacture of physical goods, are generally not used by major software suppliers. These methods are critical in assessing whether requirements are implemented. Microsoft, in answer to market pressure (the only voice they understand), is making a statement about those requirements. This is good, and appears, at least, to represent a change. However, without verifiable quality processes, the best intentions will not result in secure products.
[ reply ]
Link to this comment: http://www.securityfocus.com/comments/articles/315/10196#10196