Eric Bidstrup has posted interesting and a thought provoking commentary about the Common Criteria on MSDN blog. He concludes:
If customers expect a real-world answer to the question “Is it Safe?” to be answered by Common Criteria, then Common Criteria must change.
You can read it here: The Security Development Lifecycle : Common Criteria and answering the question ‘Is it Safe’.


