Bonum Certa Men Certa

Entire Nation of Estonia Was Downed by Microsoft Windows Zombies

Estonia's flag



Summary: Estonia a victim of Windows botnets, Conficker set to explode, the media distorts stories, and Microsoft fails to patch properly

GIVEN THAT almost 1 in 2 Windows PCs is a zombie, it's not exactly a surprise that nations get paralysed every now and then. This is not a "computer problem" but a "Windows problem", even if the Microsoft-influenced press neglects to mention some of these crucial details.

Some time ago we mentioned the damage caused to Estonia by Windows zombies. According to this report from Heise, kids too are empowered by the ease at which Windows can be hijacked, due to poor engineering.

Russian youth movement claims to have carried out cyber attacks on Estonia



[...]

"We taught the Estonian regime the lesson that if they act illegally, we will respond in an adequate way," boasted Goloskokov in the FT interview. They didn't do anything illegal, he said. "We just visited the various internet sites, over and over, and they stopped working." The Estonians' plight was caused by their own technological limitations in handling the traffic volume, he explained. During the attacks on the Estonian IT infrastructure two years ago, the country was largely cut off from the global internet, and domestic government and banking sites became inaccessible.


As we keep stating, Conficker is far from over and in fact it's scheduled to exacerbate. IDG has this report:

The third Conficker malware variant in infected machines is set to activate April 1, says the director of threat research at CA where the malware sample first discovered last week by Symantec is being examined.

"It's set to go off April 1, 2009 and Conficker will generate 50,000 URLS daily," says Don DeBolt, CA's director of threat research.


This is neither a joke nor a prank, despite the date.

We already know that Microsoft bothers journalists who criticise Windows for poor security. It does make a difference.

There is a bothersome pattern in media coverage where reporters/editors are somehow spinning Conficker to make Microsoft seem like the good guy, the brave cowboy (for example, see this and this). Microsoft's sloppiness is responsible for these attacks, but parts of the press portray Microsoft as the white knight, a hero that protects the unwashed crowds from a problem of its own making. The same thing happens in Facebook where Microsoft is attributed with "fighting" those evil worms, but how come no-one is asking why these worms exist in the first place? UNIX/Linux users don't have these problems.

Lastly, regarding Microsoft's patches to vulnerabilities, these turn out to be flawed too.

Recent Microsoft patch useless if previously exploited (Update 2)



[...]

Tyler Reguly, a researcher on nCircle’s VERT team, recently made a post to the company blog that reported a unique discovery. The patch issued by Microsoft on Tuesday to address Man-In-The-Middles attacks on Windows DNS and WINS (MS09-008) is flawed. The flaw is that if a system was exploited before the patch was applied, it remained exploited. The fix didn’t work.


Why won't journalist make a mention of secure platforms like GNU/Linux?

More on Conficker:

Recent Techrights' Posts

GNU (and the FSF) Still Changing the World
Today, in 2025, GNU powers almost everything
Military-Grade Anti-Linux Microsoft Propaganda Using Microsoft LLMs in Fake 'News' Sites (Slopfarms)
This is part of a pattern
Rust is Starting to Seem More Like Microsoft-hosted "Digital Maoism", Not a Legitimate Effort to Improve Security
Maybe this is very innocent, but they seem to have taken a solid, stable program from a high-profile Frenchman and looked for ways to marry it with GitHub, i.e. Microsoft/NSA
 
Links 09/05/2025: TeleMessage Blunder, More Distractions From Impending Mass Layoffs at Microsoft
Links for the day
Links 09/05/2025: Analog Computer and First time at FOSDEM
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, May 08, 2025
IRC logs for Thursday, May 08, 2025
Links 08/05/2025: Mass Layoffs at Google Again, India/Pakistan Tensions Continue to Grow, New Pope (US) Selected
Links for the day
"Victory Day" - Part I: That is the Day Microsofters Who Assault Women Pay for Their Actions in Foreign Land (Using "Guns for Hire" Who Attack Their Own Country for American Dollars)
Adding a friend from Microsoft to the docket didn't help
Gemini Links 08/05/2025: Practical Gemini Use Case, Shutdown of the Blanket Fort Webring
Links for the day
Links 08/05/2025: "Slop Presidency", US Government Defunds Public Broadcasting
Links for the day
Lasse Fister, Organiser of Libre Graphics Meeting, Points Out the Code of Conduct is Likely Violated by the Same People Who Promote Codes of Conduct (and Then Bully Him Into Cancelling a Keynote)
I am starting to see Lasse Fister as another victim
LLM Slop Attacks Not Only Sites of Free Software Projects But Also Bug Reporting Systems (Time-wasting, in Effect "DDoS")
Microsoft, the leading purveyor and promoter of slop, is a cancer
The Richard Stallman (RMS) "European Tour" Carries on In Spite of the Nuremberg Incident
Some people spoke about how they saw yesterday's talk
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, May 07, 2025
IRC logs for Wednesday, May 07, 2025
The CoC Means the Founder of GNU/Linux Cannot Talk and a 72-Year-Old Man With Cancer is Somehow a "Safety" Risk?
Those who don't like RMS are not forced to attend his talks
Gemini Links 07/05/2025: A Shopping Spree and Digital Gardening
Links for the day
Links 07/05/2025: Pegasus Guilty and a Path Towards EU Without Russian Energy
Links for the day
People Used to Talk
If pets can live a measurably happy life without gadgets and "apps", why can't humans?
Outsourcing GNU/Linux to Microsoft GitHub Promoted by Microsoft LLM Slop and Army Officers
Something doesn't seem right
Weaponisation of For-Profit Dockets - Part III: No More Media Lawsuits From Brett Wilson LLP This Year, One Can Only Guess Why
People leak a lot of material to Techrights because they know, based on the track record, that the sources will be protected and whatever gets published will stay online, in full, no matter how stubborn an effort (even lawsuits and blackmail) will be sent its way
Gemini Links 07/05/2025: Adopting GrapheneOS, Further Enshittification of Flickr
Links for the day
Links 07/05/2025: CISA Gutted, Debt-Saddled (Likely Insolvent) 'Open' 'AI' (Proprietary Slop) Faking Its Financial State Again
Links for the day
Finland, Lithuania, and Latvia Fortify Their Digital Border With GNU/Linux
This month's data from statCounter is particularly interesting near the Baltic Sea
The European Patent Office (EPO) Has a Very Profound Corruption Issue, Far More Urgent an Issue Than Pronouns
a rather long document
Richard Stallman Gives Public Talk at Technical University of Liberec, Czech Republic
"For programs that you could run, and for network services that could do your own computing, under what circumstances is it reasonable to trust them?"
Today We Turn 18.5
The eighteenth "and a half" anniversary
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, May 06, 2025
IRC logs for Tuesday, May 06, 2025