Windows XP: The perils for businesses that fail to upgrade

Windows XP: The perils for businesses that fail to upgrade

Microsoft's well-documented plans to end support for Windows XP have been causing quite a stir of late.

It's not surprising when you consider that the operating system (OS) is still one of the most popular around, with roughly 30 per cent of all desktop computers worldwide still running it.

Lifeline

XP's popularity and widespread use is most likely the reason that Microsoft has now thrown its loyal users a lifeline, offering both antivirus signatures and security scanning from Security Essentials to those unable to currently upgrade until 2015.

Does this mean that XP users can wait another year until they should upgrade? Realistically, no.

Waiting isn't an option

We would advise that companies should look to upgrade to a more recent OS as soon as possible, even in cases where hardware upgrades are not an option.

The main reason for this is that, regardless of Microsoft's offer of extended security support, in terms of the internet, the security model of Windows XP is ancient.

As a result, any newly discovered flaws in Windows XP will no longer be fixed, leaving systems extremely vulnerable. Hackers have had a lot more time to try and discover flaws than they would have had with a younger system, and businesses still using this OS should take this threat very seriously.

Legacy Systems and Consumer attachment

Many companies are still using XP due to a large number of business automation and supervisory control and data acquisition (SCADA) software packages still failing to support anything else – in the happy case where producers of said software are still around and providing patches, that is.

Consumers, on the other hand, tend to stick with what they know in terms of user interface, and often seek to avoid software upgrade costs which are perceived as lacking palpable benefit. In other words, we're likely to be stuck with an ever-dwindling, but still significant, minority of XP users for a long time.

In instances where an upgrade is not possible at this time, companies stuck with legacy (bespoke XP) software should at least consider going down the virtualisation route.

Legacy hardware often makes it impossible to migrate to a newer version of Windows, but a virtual host will provide far more controls in terms of security, while also divorcing the system from legacy software, which is apt to fail.

Sandbox XP

IT Directors and business owners are free to choose the software and OS they see as the best fit for their business. Our advice, however, is to consider the cost implications of a potential security breach and upgrade to a more recent OS as soon as possible.

Any businesses that continue to run XP should run it virtualised, stripped to the bare bones with hypervisor-level security and on a separate subnet. In other words, stay safe and sandbox it.

  • Alexandru Catalin Cosoi is Chief Security Strategist at Bitdefender. Catalin Cosoi's work sets the agenda for the development of new security threat countermeasures.
Latest in Pro
The socket interface of the Intel Core Ultra processor
Intel unveils its most powerful AI PCs yet - new Intel Core Ultra Series 2 processors pack in vPro for lightweight laptops and high-performance workstations alike
Webex by Cisco banner on a Chromebook
Cisco warns some Webex users of worrying security flaw, so patch now
Microsoft UK CEO Darren Hardman AI Tour London 2025
Microsoft - UK can help drive the global AI future, but only with the proper buy-in
Red padlock open on electric circuits network dark red background
AI-powered cyber threats are becoming the biggest worry for businesses everywhere
Woman using iMessage on iPhone
Apple to take legal action against British Government over backdoor request
AOC Graphic Pro U32U3CV during our review
I reviewed the AOC Graphic Pro U32U3CV and it's a staggeringly pro-grade monitor for the price
Latest in News
A hand holding a phone showing the Android Find My Device network
Android's Find My Device can now let you track your friends – and I can't decide if that's cool or creepy
Insta360 X4 360 degree camera without lens protector
Leaked DJI Osmo 360 image suggests GoPro and Insta360 should be worried – here's why
A YouTube Premium promo on a laptop screen
A cheaper YouTube Premium Lite plan just rolled out in the US – but you’ll miss out on these 4 features
Viaim RecDot AI true wireless earbuds
These AI-powered earbuds can also act as a dictaphone with transcription when left in their case
The socket interface of the Intel Core Ultra processor
Intel unveils its most powerful AI PCs yet - new Intel Core Ultra Series 2 processors pack in vPro for lightweight laptops and high-performance workstations alike
An Nvidia GeForce RTX 5070
Nvidia confirms that an RTX 5070 Founders Edition is coming... just not on launch day