Boutin Analyzes Netcraft Survey, Finds IIS Patch Efforts Lacking
Paul Boutin points out statistics in the latest Netcraft survey that indicate that IIS administrators are still not affectively securing their servers. Among other things, Boutin says: "...nearly half of all IIS servers still have a WebDAV configuration known to be vulnerable. Cross-site scripting is still unsecured on one in five machines, with many other long-known security holes still turning up on one in every five to ten sites pinged by Netcraft."
We didn't realize that Netcraft was scanning Web Sites for well known vulnerabilities. That, in itself, is interesting.