Welcome to Vishnu Sign in | Join | Help

Vishnu

This space gives you a sneak peak into whats going inside and outside my head
SQL Server is the most SECURE Database

Yes.. Thats right...
Study has shown that SQL Server is the MOST SECURE Database. It outbeats Oracle, MySQL, Sybase and DB2 in a study conducted by Enterprise Strategy Group in Common Vulnerabilities and Exposures (CVE) data. 

<Wiki>
CVE: The Common Vulnerabilities and Exposures (CVE) list provides an index of standardized names for vulnerabilities and other information security exposures - CVE aims to standardize the names for all publicly known vulnerabilities and security exposures. The CVE database is operated by the MITRE corporation, and is sponsored by the Department of Homeland Security
</Wiki>

The study goes on the record saying that "ESG considers Microsoft, with proper execution, to be years ahead of Oracle and MySQL in producing secure and reliable database products"...which is definetly a shot in the arm for Microsoft. Microsoft is currently facing severe criticsm from its "ally" Symantec and McAfee for locking down its kernal in Vista and not "allowing" third party software to run properly.

A paper available at Microsoft website which compares SQL Server 2005 and Oracle 10g on Security shows that with the same level of security features in both databases, SQL Server 2005 is significantly cheaper to purchase and own than Oracle 10g for the same functionality. The paper also talks about "Which database is more secure?". The interesting part is the way "secure" is defined. The paper says "Measures of how secure a database server is should include how many security bulletins, incidents, or advisories have been registered against the database. Security bulletins show the track record of the vendor regarding security".

Going by the security bulletins, incidents, or advisories Oracle tops the list. I believe advisories, bulletins and incidents alone wouldn't suffice. They are just couple of parameters in the complex equation. Nevertheless.. it still doesn't take away anything from Microsoft.

Posted: Sunday, November 19, 2006 10:38 AM by Vishnu

Comments

No Comments

Leave a Comment

(required) 

(required) 

(optional)

(required) 

Comment Notification

If you would like to receive an email when updates are made to this post, please register here

Subscribe to this post's comments using RSS