• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia

Trendingnow

1

Social Security unraveling: 7,100 workers sacked, performance metrics retired, disability claims falling

2

Erin Brockovich, the activist who defeated a utility giant and inspired a Julia Roberts film, is pushing data centers to be more transparent

3

Ohio city workers are covering automated license plate readers with trash bags as officials sound the alarm on 'egregious violations' of privacy

1

Social Security unraveling: 7,100 workers sacked, performance metrics retired, disability claims falling

2

Erin Brockovich, the activist who defeated a utility giant and inspired a Julia Roberts film, is pushing data centers to be more transparent

3

Ohio city workers are covering automated license plate readers with trash bags as officials sound the alarm on 'egregious violations' of privacy
TechChanging Face of Security

Famed Hacker Creates New Ratings System for Software

By
Reuters
Reuters
Down Arrow Button Icon
By
Reuters
Reuters
Down Arrow Button Icon
August 2, 2016, 6:02 PM ET
Photograph by Getty Images

A famed hacker who nearly 20 years ago told Congress he could take down the internet in 30 minutes is now going after the computer software industry, whose standard practices all but guarantee that most products will be vulnerable to cyber attacks.

Peiter Zatko, known in the hacker world as Mudge, was the best-known member of pioneering Boston hacking group the L0pht. More recently, he headed a Defense Department grant program for computer security projects.

Now Zatko and his wife, former National Security Agency mathematician Sarah Zatko, are developing what amounts to a Consumer Reports-style rating system for software.

The initiative, if it catches on, could lead to major changes in the business practices of some of the world’s largest software companies. It could also, he says, help deliver something that decades of the free market, the open-source movement, government commissions and well-paid lawyers have not: software that is consistently secure, or at least very expensive to compromise.

Get Data Sheet, Fortune’s technology newsletter.

On Wednesday at the annual Black Hat security conference in Las Vegas, the duo will explain how their system works and point out some of the early winners and losers in their analysis.

Among the preliminary findings: on Apple’s (AAPL) Macintosh computers, Google’s (GOOG) Chrome web browser is significantly harder to attack than Apple’s Safari, which in turn is much more secure than Firefox. Many Microsoft (MSFT) products have scored quite well so far, but its Office suite for Mac did terribly.

The Zatkos’ system, which they have licensed in perpetuity to a new nonprofit, is a radical attempt to solve a problem that has vexed software customers for decades: There is no unbiased, consistent method for rating the security of programs.

“We need a nutritional label,” Peiter Zatko told Reuters in an interview. “You might care more about sugar, or carbohydrates, or protein, but if we tell you about all of it, a nutritionist can help you come up with the appropriate diet.”

Cybersecurity Has a Funding Problem

Such a ratings system could prove very valuable because no other approaches to assuring secure software are working. Courts have held that software is licensed, not sold, so no product liability lawsuits can be brought for defective goods.

Big buyers can insist on third-party code audits, but that is an arduous process that few want to repeat with every new purchase. Government and private certification programs often give an incentive to develop software that meets minimum requirements and penalizes those who spend more to make it safer.

The Zatkos’ approach begins with looking not at the computer code itself, but rather the digital outputs of the code, known as binaries, which actually tell the machines exactly what to do.

“Source code is the theory, while binary is the practice. It makes a huge difference in how secure the actual product is,” Sarah Zatko said.

‘Security’ Software Wrecking Your Security Is the Ultimate Irony

The new approach shows the critical role played by compilers, which turn source code to binary. Major strides have been made in preventing compiler flaws, but many vulnerabilities remain.

Among the people most interested in the fine-grained results of the software ratings are insurance companies, which have been hard-pressed to estimate reasonable premiums for insurance against hackers.

But even without specific financial pressures, the Zatkos hope software buyers will want to look harder at where the risks are and then do something about it, forcing software creators to do better jobs.

“We’ve just been paralyzed so far, but hopefully this is something that can get us over the hurdle,” Peiter Zatko said.

About the Author
By Reuters
See full bioRight Arrow Button Icon

Latest in Tech

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Tech

SpaceX may be the biggest IPO ever, but Morningstar says it is overvalued by half and the smart investors will wait out the hype and buy later
Startups & VentureSpaceX
SpaceX may be the biggest IPO ever, but Morningstar says it is overvalued by half and the smart investors will wait out the hype and buy later
By Marco Quiroz-GutierrezJune 3, 2026
4 hours ago
Kumo AI cofounders standing in a line. From left: Vanja Josifovski, Hema Raghavan, and Jare Leskovec.
Startups & VentureNvidia
Exclusive: Nvidia snaps up Kumo AI in latest acquisition
By Sharon GoldmanJune 3, 2026
4 hours ago
These Fortune 500 companies are bigger than most national economies—here’s where they’d rank as countries
Big TechFortune 500
These Fortune 500 companies are bigger than most national economies—here’s where they’d rank as countries
By Catherina GioinoJune 3, 2026
5 hours ago
ste
EconomyRecession
OECD warns of ‘scarring effects,’ recession scenarios—but finds ‘no signs of widespread labour displacement’ from AI
By Nick LichtenbergJune 3, 2026
5 hours ago
Google CEO Sundar Pichai
AICorporate America
By every measure, U.S. companies are winning on AI adoption—but a series of high-profile snafus shows they’re getting pummeled by costs
By Tristan BoveJune 3, 2026
5 hours ago
‘A landmark moment for homebuying’: A San Francisco seller wants OpenAI or Anthropic stock for their $3 million home
Real EstateHousing
‘A landmark moment for homebuying’: A San Francisco seller wants OpenAI or Anthropic stock for their $3 million home
By Sydney LakeJune 3, 2026
5 hours ago

Most Popular

Social Security unraveling: 7,100 workers sacked, performance metrics retired, disability claims falling
North America
Social Security unraveling: 7,100 workers sacked, performance metrics retired, disability claims falling
By Katie Savin, Callie Freitag, Matthew Borus and The ConversationJune 2, 2026
1 day ago
Erin Brockovich, the activist who defeated a utility giant and inspired a Julia Roberts film, is pushing data centers to be more transparent
Environment
Erin Brockovich, the activist who defeated a utility giant and inspired a Julia Roberts film, is pushing data centers to be more transparent
By Marco Quiroz-GutierrezJune 1, 2026
2 days ago
Ohio city workers are covering automated license plate readers with trash bags as officials sound the alarm on 'egregious violations' of privacy
Cybersecurity
Ohio city workers are covering automated license plate readers with trash bags as officials sound the alarm on 'egregious violations' of privacy
By Sasha RogelbergJune 3, 2026
11 hours ago
Southwest exec says the free bag and assigned seating overhaul is already paying off
Travel & Leisure
Southwest exec says the free bag and assigned seating overhaul is already paying off
By Preston ForeJune 2, 2026
1 day ago
Current price of oil as of June 2, 2026
Personal Finance
Current price of oil as of June 2, 2026
By Joseph HostetlerJune 2, 2026
2 days ago
'Where we are today is frightening': a Pulitzer-winning historian sees a doomsday scenario involving China and the national debt
Banking
'Where we are today is frightening': a Pulitzer-winning historian sees a doomsday scenario involving China and the national debt
By Nick LichtenbergJune 2, 2026
2 days ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.