Is Microsoft liable for Code-Red?

Maybe if Microsoft were billed for all this Code-Red mess (damages are currently estimated at $1.2 billion via, maybe they would start being a little more proactive about security in their software. Considering the number of developers and the talent they have on staff at Microsoft, I don't understand why they can't write secure software. Is it just not a priority or something? Or perhaps less of a priority than the bells and whistles that make them less secure to begin with?


August 1, 2001

