02.22.09

Gemini version available ♊︎

Microsoft’s Latest Web and Security Setbacks: A Summary

Posted in Microsoft, Security, Windows at 6:41 am by Dr. Roy Schestowitz

Novell cloud

Silver Lie

MICROSOFT’S fight for the Web is an important one, but it is not working out too well because none of its technologies are properly adopted. Microsoft has already bribed people to boost its search engine (without success) and since Silverlight is scarcely adopted, Microsoft has resorted to “shovelware” techniques with the help of companies like H-P. Here is the type of things they do, based on the latest news.

It’s also relying on old tactics, like using Silverlight in Microsoft Web pages or to power Microsoft Web applications. For example, Microsoft uses Silverlight in its MSN Toolbar and in places like a presentation on the economic downturn on MSN Money’s Web site.

Novell too is helping Microsoft in this area, despite dismal demand.

Internet Explorer 8 (Test Build)

How well is it coming along? Here is something to serve as a clue.

All-about-Microsoft blogger Mary-Jo Foley has reported that – out of the box – the current IE 8 release candidate will not work with at least 2,400 web sites. That’s “major” sites as defined by Microsoft and excluding many more considered too small or too niche by the company.

Microsoft continues to reinvent the wheel poorly because it implements its own rendering engine rather than decentralise the work like some other companies do (e.g. WebKit). What would Microsoft shareholders have to say, let alone Web developers whose sites arbitrarily ‘break’ every time Microsoft makes an IE release?

Internet Explorer 6

This Web browser is so obnoxious to users and Webmasters alike that people in the home or Opera work on some kind of a gentle boycott.

Norwegian web sites are campaigning to have users dump Microsoft’s Internet Explorer 6 for a modern browser.

This news is also covered here and here.

Internet Explorer 7

Microsoft’s current Web browser is IE7 and it’s under attacks at the moment.

Internet attack trackers and antivirus companies warn that a flaw in Internet Explorer 7 (but not earlier versions) that Microsoft just patched last week is under attack in the wild. The attacks appear to be targeted and small-scale right now, but will likely grow.

Trend Micro describes a somewhat roundabout attack that starts with an e-mailed .doc file that, when opened, exploits the MS09-002 vulnerability to download and install remote-control backdoor malware.

This was also covered in The Register.

More (In)Security

There is a lot more going in this critical area of security. Blame-shifting has not exactly worked charmingly for Microsoft because Conficker is causing great damage [1, 2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12] and now come the mutant-variants which can probably dodge detection.

The criminals behind the widespread Conficker worm have released a new version of the malware that could signal a major shift in the way the worm operates.

The new variant, dubbed Conficker B++, was spotted three days ago by SRI International researchers, who published details of the new code on Thursday. To the untrained eye, the new variant looks almost identical to the previous version of the worm, Conficker B. But the B++ variant uses new techniques to download software, giving its creators more flexibility in what they can do with infected machines.

Other online services of Microsoft are being exploited by crackers. Xbox Live is one example.

Hackers target Xbox Live players

Xbox Live is being targeted by malicious hackers selling services that kick players off the network.

This is not the first problem of this kind. Previously, there was a massive blunder where people’s Xbox Live accounts were being hijacked and Microsoft couldn’t be bothered to do anything about it.

Adding to the existing troubles Microsoft causes to E-mail, there is this:

Spammers have cracked Microsoft Corp. ‘s latest defense against abuse of its Live Hotmail e-mail service using a sophisticated network of hacked computers that receive encrypted instructions from a central server, a security company has reported.

Lastly, regarding reliability concerns, the Microsoft-dominated NHS, just like the Microsoft-dominated LSE, has crashed pretty badly.

The database that stores vital medical information on millions of NHS patients crashed last week.

Haven’t any lessons been learned by UK healthcare [1, 2]? Microsoft does not belong in critical operations where life is at stake.

“Our products just aren’t engineered for security.”

Brian Valentine, Microsoft executive

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

Decor ᶃ Gemini Space

Below is a Web proxy. We recommend getting a Gemini client/browser.

Black/white/grey bullet button This post is also available in Gemini over at this address (requires a Gemini client/browser to open).

Decor ✐ Cross-references

Black/white/grey bullet button Pages that cross-reference this one, if any exist, are listed below or will be listed below over time.

Decor ▢ Respond and Discuss

Black/white/grey bullet button If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

A Single Comment

  1. NotZed said,

    February 22, 2009 at 10:24 pm

    Gravatar

    “Microsoft continues to reinvent the wheel poorly because it implements its own rendering engine rather than decentralise the work like some other companies do (e.g. WebKit).”

    I disagree. It’s just a rendering engine. Sure it might be a prick to get it perfect/etc, but if they have enough resources it can be solved – mozilla have their own, opera has its own. It’s not impossible.

    It probably has more to do with a poor codebase (just a guess – lots of bugs and rushed to market) and trying to keep compatability with their existing buggy crap. They probably haven’t thrown that many engineers at it anyway – HTML5 competes quite favourably with silverlight for many uses. It’s probably more of a marketing `effort’ to convince people they’re actually committed to the net.

DecorWhat Else is New


  1. Links 31/05/2023: Armbian 23.05 Release and Illegal UPC

    Links for the day



  2. IRC Proceedings: Tuesday, May 30, 2023

    IRC logs for Tuesday, May 30, 2023



  3. Gemini Protocol About to Turn 4 and It's Still Growing

    In the month of May we had zero downtime (no updates to the system or outages in the network), which means Lupa did not detect any errors such as timeouts and we’re on top of the list (the page was fixed a day or so after we wrote about it); Gemini continues to grow (chart by Botond) as we’re approaching the 4th anniversary of the protocol



  4. Links 31/05/2023: Librem Server v2, curl 8.1.2, and Kali Linux 2023.2 Release

    Links for the day



  5. Gemini Links 31/05/2023: Bayes Filter and Programming Wordle

    Links for the day



  6. [Meme] Makes No Sense for EPO (Now Connected to the EU) and Staff Pensions to be Tied to the UK After Brexit

    It seems like EPO staff is starting to have doubts about the safety of EPO pensions after Benoît Battistelli sent money to reckless gambling (EPOTIF) — a plot that’s 100% supported by António Campinos and his enablers in the Council, not to mention the European Union



  7. Working Conditions at EPO Deteriorate and Staff Inquires About Pension Rights

    Work is becoming a lot worse (not even compliant with the law!) and promises are constantly being broken, so staff is starting to chase management for answers and assurances pertaining to finances



  8. Links 30/05/2023: Orc 0.4.34 and Another Rust Crisis

    Links for the day



  9. Links 30/05/2023: Nitrux 2.8.1 and HypoPG 1.4.0

    Links for the day



  10. Gemini Links 30/05/2023: Bubble Version 3.0

    Links for the day



  11. Links 30/05/2023: LibreOffice 7.6 in Review and More Digital Restrictions (DRM) From HP

    Links for the day



  12. Gemini Links 30/05/2023: Curl Still Missing the Point?

    Links for the day



  13. IRC Proceedings: Monday, May 29, 2023

    IRC logs for Monday, May 29, 2023



  14. MS (Mark Shuttleworth) as a Microsoft Salesperson

    Canonical isn’t working for GNU/Linux or for Ubuntu; it’s working for “business partners” (WSL was all along about promoting Windows)



  15. First Speaker in Event for GNU at 40 Called for Resignation/Removal of GNU's Founder

    It’s good that the FSF prepares an event to celebrate GNU’s 40th anniversary, but readers told us that the speakers list is unsavoury, especially the first one (a key participant in the relentless campaign of defamation against the person who started both GNU and the FSF; the "FSFE" isn't even permitted to use that name)



  16. When Jokes Became 'Rude' (or Disingenuously Misinterpreted by the 'Cancel Mob')

    A new and more detailed explanation of what the wordplay around "pleasure card" actually meant



  17. Site Updates and Plans Ahead

    A quick look at or a roundup of what we've been up to, what we plan to publish in the future, what topics we shall focus on very soon, and progress moving to Alpine Linux



  18. Links 29/05/2023: Snap and PipeWire Plans as Vendor Lock-in

    Links for the day



  19. Gemini Links 29/05/2023: GNU/Linux Pains and More

    Links for the day



  20. Links 29/05/2023: Election in Fedora, Unifont 15.0.04

    Links for the day



  21. Gemini Links 29/05/2023: Rosy Crow 1.1.1 and Smolver 1.2.1 Released

    Links for the day



  22. IRC Proceedings: Sunday, May 28, 2023

    IRC logs for Sunday, May 28, 2023



  23. Daniel Stenberg Knows Almost Nothing About Gemini and He's Likely Just Protecting His Turf (HTTP/S)

    The man behind Curl, Daniel Stenberg, criticises Gemini; but it's not clear if he even bothered trying it (except very briefly) or just read some inaccurate, one-sided blurbs about it



  24. Links 29/05/2023: Videos Catchup and Gemini FUD

    Links for the day



  25. Links 28/05/2023: Linux 6.4 RC4 and MX Linux 23 Beta

    Links for the day



  26. Gemini Links 28/05/2023: Itanium Day, GNUnet DHT, and More

    Links for the day



  27. Links 28/05/2023: eGates System Collapses, More High TCO Stories (Microsoft Windows)

    Links for the day



  28. IRC Proceedings: Saturday, May 27, 2023

    IRC logs for Saturday, May 27, 2023



  29. No More Twitter, Mastodon, and Diaspora for Tux Machines (Goodbye to Social Control Media)

    People would benefit from mass abandonment of such pseudo-social pseudo-media.



  30. Links 28/05/2023: New Wine and More

    Links for the day


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts