Microsoft beat several records in 2024

winjer

Member
Microsoft beat a lot of records in 2024, by having more software vulnerabilities than ever.
And these are just the ones that were found out.....


Key Findings from the 2025 Report

  • Total vulnerabilities rose to 1,360 in 2024—a record high since the report began.
  • The Elevation of Privilege (EoP) category accounted for a massive 40% (554) of the total vulnerabilities last year.
  • Microsoft Azure and Dynamics 365 vulnerabilities plateaued in 2024.
  • Microsoft Edge experienced a 17% increase to 292 vulnerabilities last year, with 9 critical (an 800% jump).
  • There were 587 Windows vulnerabilities in 2024, 33 were critical.
  • Windows Server had 684 vulnerabilities in 2024, 43 were critical.
  • Microsoft Office experienced 62 vulnerabilities in 2024, almost double that of 2023.

"The dominance of Elevation of Privilege vulnerabilities in Windows systems should set off alarm bells for every security professional. At 40% of all vulnerabilities, this category represents the most critical attack surface that defenders need to monitor and control."

—Kip Boyle, CISO, Cyber Risk Opportunities LLC


Oh No Fire GIF
 
The best is yet to come. They want to force everyone into Windows 11 for "better security" and the result will be the worsesning overall security by all those still stuck at W10 and are unable to upgrade.
 
How about some perspective here.

Linux and Microsoft as the top affected vendors, with 2,315 and 1,205 vulnerabilities, respectively. This is not surprising given Linux's widespread use in servers, IoT devices, and cloud environments, along with its open-source nature that promotes transparent vulnerability tracking.

Similarly, Linux emerged as the most affected operating system, reporting 2,313 vulnerabilities, followed by macOS and Windows.


Linux worse than Microsoft. MacOS higher than Windows. Didn't see those posted.

Source
 
Last edited:
How about some perspective here.

Linux and Microsoft as the top affected vendors, with 2,315 and 1,205 vulnerabilities, respectively. This is not surprising given Linux's widespread use in servers, IoT devices, and cloud environments, along with its open-source nature that promotes transparent vulnerability tracking.

Similarly, Linux emerged as the most affected operating system, reporting 2,313 vulnerabilities, followed by macOS and Windows.


Linux worse than Microsoft. MacOS higher than Windows. Didn't see those posted.

Source

Admittedly, I had only seen the report for MS so far.
But it makes sense that Linux is on the top of the research for vulnerabilities, considering it's the backbone of the internet.

I'm surprised that MacOS is above Windows. Considering it's limited use.
I guess Apple is funding a lot of security research for it.
 
Top Bottom