Microsoft introduces Attack Surface Analyser
The Attack Surface Analyser will help users understand how adding applications could impact the security of Microsoft systems.


Microsoft has launched a testing tool for developers to figure out the security implications of their apps.
The Attack Surface Analyser has been launched in beta form at the Blackhat DC event taking place this week.
It is designed to help developers "identify increases in the attack surface caused by installing applications on a machine," Microsoft explained in a Secure Development Lifecycle blog post.
"The tool takes snapshots of an organisation's system and compares these to identify changes," the company said.
"Some of the checks performed by the tool include analysis of changed or newly added files, registry keys, services, ActiveX Controls, listening ports, access control lists and other parameters that affect a computer's attack surface."
The tool searches for classes of security weaknesses as applications are installed on to a Windows OS.
"The tool also gives an overview of the changes to the system Microsoft considers important to the security of the platform and highlights these in the attack surface report," the Redmond giant said.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Developers will be pleased to hear Microsoft has made the technology available from now for free.
There has been plenty of debate around app security this week.
Facebook decided to rethink a feature designed to grant developers access to user phone numbers and addresses.
The social network said it wanted to ensure users were only giving away data they wanted.
Sophos suggested Facebook should adopt the "walled garden" approach Apple uses when it comes to allowing apps.
Tom Brewster is currently an associate editor at Forbes and an award-winning journalist who covers cyber security, surveillance, and privacy. Starting his career at ITPro as a staff writer and working up to a senior staff writer role, Tom has been covering the tech industry for more than ten years and is considered one of the leading journalists in his specialism.
He is a proud alum of the University of Sheffield where he secured an undergraduate degree in English Literature before undertaking a certification from General Assembly in web development.
-
Should AI PCs be part of your next hardware refresh?
AI PCs are fast becoming a business staple and a surefire way to future-proof your business
By Bobby Hellard
-
Westcon-Comstor and Vectra AI launch brace of new channel initiatives
News Westcon-Comstor and Vectra AI have announced the launch of two new channel growth initiatives focused on the managed security service provider (MSSP) space and AWS Marketplace.
By Daniel Todd
-
Meta to pay $725 million in Cambridge Analytica lawsuit settlement
News The settlement closes the long-running lawsuit into how Facebook's owner, Meta, handled the Cambridge Analytica scandal
By Ross Kelly
-
Meta's earnings are 'cause for concern' and 2023 looks even bleaker
Analysis Calls for investor faith in metaverse tech only emphasise the worries that its investment strategy won't pay off
By Rory Bathgate
-
Sophos Intercept X Advanced review: A huge range of endpoint protection measures for the price
Reviews A superb range of security measures and a well-designed cloud portal make endpoint protection a breeze
By Dave Mitchell
-
Microsoft and Meta announce integration deal between Teams and Workplace
News Features from both business collaboration platforms will be available to users without having to switch apps
By Connor Jones
-
Facebook is shutting down its controversial facial recognition system
News The move will see more than a billion facial templates removed from Facebook's records amid a push for more private applications of the technology
By Connor Jones
-
'Changing name to Meat': Industry reacts to Facebook's Meta rebrand
News The rebrand attempts to provide a clearer distinction between Facebook and its umbrella company
By Connor Jones
-
Facebook's Oversight Board demands more transparency
News Board bashed the social media giant for its preferential treatment of certain high-profile accounts
By Danny Bradbury
-
Facebook claims AI managed to reduce hate speech by 50%
News The social media platform has hit back at claims the tech it uses to fight hate speech is inadequate
By Sabina Weston