According to a report by iViZ on the (in)security of security products:
- Security products are high-value targets for hackers as they are present on most systems.
- The report analyzed vulnerabilities in major security vendors over time from databases like CVE and NVD.
- Many well-known security products from vendors like Symantec, McAfee, and Kaspersky have been found to contain vulnerabilities that could allow attackers to bypass encryption or execute code remotely.
- The largest threats to security vendors are the black market for zero-day exploits and cyber warfare, though vulnerabilities are as common in security products as other software.