Updated: July 11, 2020 (February 9, 2004)

  Analyst Report

New Baseline Security Analyzer Uncovers Patch Problems

My Atlas / Analyst Reports

1,121 wordsTime to read: 6 min
Michael Cherry by
Michael Cherry

Michael analyzed and wrote about Microsoft's operating systems, including the Windows client OS, as well as compliance and governance. Michael... more

A new version of the Microsoft Baseline Security Analyzer (MBSA) can help customers detect and repair security vulnerabilities on their computers. MBSA version 1.2 is the best of Microsoft’s security scanning tools because it checks for both missing patches and configuration problems in the widest range of products However, the reports it creates require a high level of expertise to interpret correctly, and users will still sometimes get incorrect and inconsistent results. Bad results aren’t caused by the MBSA, but by the uneven quality of patches and patch detection information supplied by the individual product groups.

What Is MBSA?

Microsoft offers various tools, such as Windows Update, Office Update, and MBSA, to help customers examine the security state of their computers. All are free, but they differ in the way they scan a computer for problems and the problems they can detect.

MBSA is the most versatile of these tools in that it can scan multiple computers for the widest range of security problems, including missing patches and incorrect configurations that can create vulnerabilities, such as weak or nonexistent passwords. After installing the free MBSA download, users can select a single computer or group of computers (by domain or IP address range) that they want to check. MBSA then downloads the latest version of an XML-formatted file from Microsoft (mssecure.xml) that contains the information MBSA needs to determine whether the correct patches are installed and whether the configuration is optimized for security.

Atlas Members have full access

Get access to this and thousands of other unbiased analyses, roadmaps, decision kits, infographics, reference guides, and more, all included with membership. Comprehensive access to the most in-depth and unbiased expertise for Microsoft enterprise decision-making is waiting.

Membership Options

Already have an account? Login Now