02.11.09

Is Windows to Blame for Cracking of Federal Aviation Administration (FAA)?

Posted in Microsoft, Security, Vista, Vista 7, Windows at 11:17 am by Dr. Roy Schestowitz

Emergency person

SEVERAL MONTHS AGO we wrote about the disasters which the FAA had been experiencing, probably due to its reckless choice of Microsoft Windows. Now we’re witnessing planes that are being grounded due to similar problems (Microsoft denies this). But it may all be just be ‘small potatoes’ compared to a crack of this scale, which the Associated Press wrongly characterises as “hacking”.

Hackers broke into the Federal Aviation Administration’s computer system last week, accessing the names and Social Security numbers of 45,000 employees and retirees.

Wonderful.

TechDirt has meanwhile gotten around to commenting on related news.

Unpatched, Virus-Infected Windows To Blame For Grounded French Fighter Pilots And Halt To Traffic Arrests In Houston

Reader Calvin sends in two separate stories of government institutions who apparently failed to patch their Windows machines to protect against the Conficker virus — despite the patch being available for many months. First, Houston police have stopped arresting people with outstanding traffic warrants and shut down the municipal court system for a few days to try to deal with their computer systems being overrun by the virus.

Whether a person is troubled by use of Windows or not, the side effects appear not only in billing (damage is compensated for collectively) but also in people’s E-mail. This is made possible owing to massive Windows-based botnets.

Virus authors are attempting to hoodwink unwary and lovestruck internet users with malware that poses as Valentine’s Day-related games and email greetings.

The hacker tactic is a familiar companion to annual holidays, such as Christmas, New Year’s Day and Valentine’s Day. McAfee reports that the Valentine’s Day spam links to URLs pushing the Waledac Trojan, a strain of malware that has copied many of its techniques and features from the infamous Storm Trojan.

Another side effect of these turbulent experiences is being combated by a victim of the very same botnets which it fights, namely DNS. IDG published this report:

OpenDNS has added a feature to its Domain Name System (DNS) services to fight a widespread worm, with help from Russian security company Kaspersky Lab.

OpenDNS has its own network of DNS servers that translate domain names into IP (Internet Protocol) addresses so, for example, Web sites can be displayed in a browser. The company says its system is faster than using the DNS servers run by ISPs (Internet service providers) and provides better protection against phishing as well as other features such as Web content filtering.

As far as Microsoft is concerned, there is no solution to this (not even Vista 7) and some people are meanwhile dying. This is totally preventable because secure platforms like GNU/Linux exist and are readily available.

“[W]e’re not going to have products that are much more successful than Vista has been.”

Steve Ballmer

“David Smith commented that Gartner will not bash MS if MS chooses to slip Vista.”

Jamin Spilzer, Microsoft

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

This post is also available in Gemini over at:

gemini://gemini.techrights.org/2009/02/11/federal-aviation-administration-cracked/

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

7 Comments

  1. Needs Sunlight said,

    February 11, 2009 at 12:14 pm

    Gravatar

    When there was a major, cascading power outage on the east coast of the US, Windows was initially implicated. For about a day, as events unfolded, it looked every hour more and more like Windows was at the bottom. Suddenly all discussion and investigation appeared to stop and no further coverage of the cause was provided afterwards.

    So it’s not just now, during the recession that Gates has been putting salt on the wounds, he’s also been helping make the cuts, too.

  2. Ty said,

    February 11, 2009 at 10:23 pm

    Gravatar

    That reminds of of the less serious but similar story about my state government not allowing anyone in the government to go on Myspace or Facebook. NOT because it is a waste of time but because of an uptick in Windows viruses from the sites.

    So instead of recommending that staff and officials get Linux or even get some Macs so the officials can post on their myspace and facebook pages, the IT security dept just wholesale blocked those sites and others!

    Stupid in my opinion!

    Quote:

    “We realize that this may be an inconvenience and we apologize,” Office of Legislative Information Systems Director Michael Gaudiello wrote in a note to the affected parties. “But it is essential that the integrity of the Maryland General Assembly computer systems and facilities are protected.”

    http://www.baltimoresun.com/news/local/politics/bal-te.facebook07feb07,0,1339786.story

    “It puts the General Assembly in the Stone Age” Said Del. Christopher B. Shank (R-Washington).

    “This is like China” Said Sen. James C. Rosapepe (D-Prince George’s).

    http://mobile.washingtonpost.com/news.jsp?key=348270&rc=tech#___1__

    Sad. People don’t learn.

  3. Roy Schestowitz said,

    February 11, 2009 at 10:30 pm

    Gravatar

    For similar reasons, USB devices are banned in some places.

  4. Needs Sunlight said,

    February 12, 2009 at 5:50 am

    Gravatar

    USB devices are only present anyway because Windows got into the infrastructure and makes it impossible to have networked file sharing. So it’s back to good old sneakernet, this time instead of 5.25″ floppies or even 3.5″ floppies its a dog-leash around the neck with a cluster of USB sticks.

    It’s damage by M$ from multiple angles there.

    Ban M$ products, and penalize the turds that deployed them, and you clear up 99% of today’s security problems. Of course that will mean a greater problem from web 2.0, but throw away all useless client-side scripting, flash and flash-like animations and you will clean up that vector as well.

    For years everyone stayed away from client side scripting cause it sucked and was insecure. It still is both. Some say that the only reason web 2.0 is to compensate for the move away from the permeable M$ products and add holes.

  5. Roy Schestowitz said,

    February 12, 2009 at 6:35 am

    Gravatar

    What is “Web 2.0″ really?

  6. Ian said,

    February 12, 2009 at 1:00 pm

    Gravatar

    @Needs Sunlight

    Are you serious, or just goofing around?

    USB devices are only present anyway because Windows got into the infrastructure and makes it impossible to have networked file sharing.

    Have you ever heard of CIFS or SMB or Samba or Windows shares or NFS or FTP or NCP? You do understand that you can transfer files over a network between two Windows boxes or a Windows box and a Linux box..right?

    Ban M$ products, and penalize the turds that deployed them, and you clear up 99% of today’s security problems.

    That’s an ignorant comment. Does Microsoft have a good history with security? Not really. Will everyone switching to Linux suddenly make admins impervious to leaving services turned on or not configuring firewalls correctly? Don’t make the mistake of thinking Linux boxes don’t get rooted.

    Some say that the only reason web 2.0 is to compensate for the move away from the permeable M$ products and add holes.

    That doesn’t make any sense. Web 2.0 is nothing more than an evolution of web design. It’s not a Microsoft thing, it’s not a Novell thing, it’s not a Linux thing, it’s not even a Google thing.

    Look, you hate Microsoft. That’s fine. But don’t make things up.

  7. Roy Schestowitz said,

    February 12, 2009 at 1:28 pm

    Gravatar

    I think s/he was referring to escape from desktop-bound applications.

What Else is New


  1. Links 18/6/2021: Mir 2.4, ActivityWatch 0.11, Microsoft Breaks Its Own Repos

    Links for the day



  2. [Meme] When the 'Court' Drops

    As the EPO sneakily outsourced courts to American companies and parties in dispute depend on their ISP for “access to justice” there’s a catastrophic impact on the very concept of justice or the right to be heard (sometimes you don’t hear anything and/or cannot be heard)



  3. The EPO's Virtual Injustice and Virtual ('News') Media

    A discussion of this morning's post (part 10 in a series) about the shallow media/blog coverage that followed or accompanied last month's notorious EPO hearing



  4. Links 18/6/2021: LibreOffice 7.2 Beta, Elementary OS 6.0 Beta 2, and Linux Mint 20.2 “Uma” Beta

    Links for the day



  5. The Self-Hosting Song

    Cautionary tales about outsourcing one's systems to companies that could not care less about anyone but themselves



  6. IRC Proceedings: Thursday, June 17, 2021

    IRC logs for Thursday, June 17, 2021



  7. [Meme] Swedish Justice

    The EPO‘s patent tribunals have been mostly symbolic under the Benoît Battistelli and António Campinos regimes; giving them back their autonomy (and removing those who help Battistelli and Campinos attack their autonomy) is the only way to go now



  8. Virtual Injustice -- Part 10: Vapid and Superficial Coverage in the 'IP' Blogosphere

    The media has come under attack by Benoît Battistelli; during the term of António Campinos most of the media critical of the EPO has mostly vanished already; so one needs to look carefully at comments and social control media



  9. Links 18/6/2021: RasPad 3 and Pushing Rust Into the Linux Kernel

    Links for the day



  10. Heli Pihlajamaa Promoting Software Patents to Patent Maximalists

    "Ms Pyjamas" from the EPO is promoting illegal software patents to a bunch of patent zealots (CIPA)



  11. The Lying by Team UPC, Led Again by Kevin Mooney

    Team UPC, or specifically Mr. Mooney, lies to the public about the prospects of the UPC; similarly, EPO and EU officials keep bringing up false claims about the UPC, so while the UPC itself has likely died for good the lies have not



  12. Links 17/6/2021: Cutelyst 3 and Lenovo Move Towards ThinkPad BIOS Configuration From Within Linux

    Links for the day



  13. Too Much Noise and/or Distraction and General Loss of Focus (on the Real and Urgent Issues, Such as the Ongoing Anti-FSF 'Coup')

    The media is full of Microsoft fluff and technical blog posts still focus on the Freenode fiasco, among other things that don't matter all that much; but we certainly need to talk about steps undertaken to undermine the FSF's power because long-term ramifications may be huge



  14. [Meme] The Enlarged Bored People With Presidential Decrees

    The laughable state of the EPO‘s EBA (or EBoA) is rarely commented on anymore, not even in so-called ‘IP’ blogs; maybe they’re just so eager to see patents on everything, even European software patents, so tyrants who destroy the courts (with UPC lobbying and removal of EBA independence) don’t bother them so much anymore



  15. Response to Misinformation From EPO Officials

    Opponents of European software patents are clearly being mischaracterised by EPO officials, who also use meaningless buzzwords to promote such patents; as an aside or footnote that relates to our ongoing series we’re making this quick video, which is days late



  16. [Meme] Tilting the Scales for Software Patents

    Shovelling up lots of patents, even worthless patents such as software patents, dooms the EPO (EPC violations, lawlessness), dooms European professionals, but the wrong people have been put in charge and courts are being intimidated by them



  17. Virtual Injustice -- Part 9: Heli, the EPO's Nordic Ice-Queen

    Team Campinos is full of people who instead of grasping and working to promote innovation are boosting the agenda of litigation (scientists are not being employed)



  18. IRC Proceedings: Wednesday, June 16, 2021

    IRC logs for Wednesday, June 16, 2021



  19. Links 17/6/2021: elementary OS 6 Beta 2 and JingPad Linux Tablet Crowdfunding

    Links for the day



  20. Techrights Statement on IRC

    Freenode needs to explain what the hell happened this week and why communities that make up the network weren't informed or consulted



  21. IRC Proceedings: Tuesday, June 15, 2021

    IRC logs for Tuesday, June 15, 2021



  22. Virtual Injustice -- Part 8: A Well-Connected 'IP' Maximalist

    The EPO‘s lobbying for European software patents goes all the way to the top, including António Campinos and his circle



  23. Links 16/6/2021: Alpine 3.14.0 and DXVK 1.9

    Links for the day



  24. Links 15/6/2021: Debian Installer Bullseye RC 2 and Zink Updates

    Links for the day



  25. IRC Proceedings: Monday, June 14, 2021

    IRC logs for Monday, June 14, 2021



  26. Virtual Injustice -- Part 7: Musical Chairs and Revolving Doors

    Cross pollination in Alicante and Munich serves to show that people aren't picked for their skills and experience; it's like a private club or a clique



  27. Hardly Shocking and Not At All Surprising That Thugs Who Run the EPO Hired External Thugs to Help Them Oppress Aggrieved Staff

    With the EPO's management flooding the bank accounts of aggressive law firms (at our expense) we need to ask serious questions about how such a "Mafia" (what EPO staff calls the management) managed to metastasise inside Europe's second-largest institution and how to remove this "Mafia" as soon as possible (some arrests too are well overdue)



  28. [Meme] There Are No Elections in Mafia-Type Regimes; It's About Family and Friends...

    With no real concept or notion of "elections" (the so-called 'mafia' members choose their successors and colleagues) the EPO's patent examiners clearly need outside intervention, e.g. inquest by the EU authorities (the EPC died and maybe the EPO too; it's unregulated and it grants false patents that harm Europe because the courts don't function, either)



  29. Today's Linux Standing for the Opposite of What Linux Users Stand for

    The so-called 'Linux' Foundation or the "Corporate Linux Foundation" is alienating many of the original users of GNU/Linux and it still insults their intelligence; it's rewriting history, it still distorts the objectives, and before we know Linux will perish and lose momentum because all the excitement associated with the brand will fizzle away



  30. Links 14/6/2021: Kdenlive 21.04.2 and Raspberry Pi 400 Support in Linux

    Links for the day


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts