Feeds

Microsoft Security Essentials loses AV-TEST certification

German lab downgrades Redmond after zero-day detection rates slide

The Power of One eBook: Top reasons to choose HP BladeSystem

Microsoft Security Essentials, Redmond’s free antivirus tool for home users and business with up to ten PCs, can detect just 64 per cent of zero-day threats when running under Windows 7.

That low detection rate has cost it the AV-TEST Institute’s seal of approval, a certification it hands out to products that meet 11 of 18 criteria it assess. Those criteria consider how effective software is at detecting and blocking threats, repair of infected systems and overall usability including “average slowing down of the computer when the software is used on a daily basis, false positives during a system scan and the display of false warnings or the blocking of certain actions during the installation and during the use of known good software.”

The Institute conducts tests bi-monthly and lists longitudinal data on software products’ performance.

During October the Institute rated Security Essentials 4.0 and 4.1 at just 1.5 out of 6 in terms of its ability to protect a PC, thanks largely to the 64 per cent zero-day detection rate being well below the industry average 89 per cent.

Security Essentials has lost AV-TEST’s seal before, with its September 2010 test failing to meet the lab’s criteria. It is the only one of 24 AV products for Windows 7 without the certification. Four products missed out for Windows Vista and two for Windows XP. Windows 8 AV tools are yet to go under the microscope and Microsoft is absent from AV-TEST's list of vendors thanks to the new OS' integrated protection software.

While tests like these have no official standing, a look at AV-TEST’s longitudinal analysis of Security Essentials show it has consistently struggled to perform well in its malware detection and blocking tests.

Another security software testing organisation, Virus Bulletin, says Security Essentials’ performance is sufficient to justify its VB100 rating, which can only be attained by software that “prove[s] it can detect 100% of malware samples listed as 'In the Wild' by the WildList Organization” without generating any false positives. ®

Designing a Defense for Mobile Applications

More from The Register

next story
Mozilla fixes CRITICAL security holes in Firefox, urges v31 upgrade
Misc memory hazards 'could be exploited' - and guess what, one's a Javascript vuln
How long is too long to wait for a security fix?
Synology finally patches OpenSSL bugs in Trevor's NAS
Don't look, Snowden: Security biz chases Tails with zero-day flaws alert
Exodus vows not to sell secrets of whistleblower's favorite OS
Roll out the welcome mat to hackers and crackers
Security chap pens guide to bug bounty programs that won't fail like Yahoo!'s
HIDDEN packet sniffer spy tech in MILLIONS of iPhones, iPads – expert
Don't panic though – Apple's backdoor is not wide open to all, guru tells us
Researcher sat on critical IE bugs for THREE YEARS
VUPEN waited for Pwn2Own cash while IE's sandbox leaked
Four fake Google haxbots hit YOUR WEBSITE every day
Goog the perfect ruse to slip into SEO orfice
prev story

Whitepapers

Designing a Defense for Mobile Applications
Learn about the various considerations for defending mobile applications - from the application architecture itself to the myriad testing technologies.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Top 8 considerations to enable and simplify mobility
In this whitepaper learn how to successfully add mobile capabilities simply and cost effectively.
Seven Steps to Software Security
Seven practical steps you can begin to take today to secure your applications and prevent the damages a successful cyber-attack can cause.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.