Secunia built its own auto-update program. The company's PSI 2.0 will auto-update many products with the latest patches, Frei said. PSI is free, and Secunia sells a corporate version of the product called the Corporate Software Inspector.
One of the companies that has improved dramatically is Adobe Systems, hammered a couple of years ago by the discovery of many vulnerabilities in its Reader and Flash products, Frei said. Adobe has an auto-update mechanism for Reader, Acrobat and Flash.
In November, Adobe introduced a sandbox in its Reader X product, which seals the application off from attacks designed to tamper with, for example, a computer's file system or registry. Frei said it is too soon to say how that has affected the product's security.
Sign up for Computerworld eNewsletters.