EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

04.23.09

Vista 7 Security “Cannot be Fixed. It’s a Design Problem.”

Posted in Microsoft, Security, Vista 7, Windows at 12:53 pm by Dr. Roy Schestowitz

Vista 7 starts now

Summary: Yet another vector of compromise found in Vista 7; new damage control and PR dissected

MICROSOFT MAY already know that Vista 7 will disappoint enterprise users and there are bad signs ahead of a distant release date. But one particular issue that we’ve been keeping track of is the serious security holes which may suggest that Vista 7 would be less secure than the already-insecure Windows Vista.

Vista 7 does not exist as a product yet, but it has already been breached entirely (or shown to be hijack-able) on several occasions since its test builds were first made public. To give just 3 examples from totally separate times (there are more such examples):

Well, here is a brand-new one for April:

Researchers show how to take control of Windows 7

[...]

“There’s no fix for this. It cannot be fixed. It’s a design problem,” Vipin Kumar said, explaining the software exploits the Windows 7 assumption that the boot process is safe from attack.

Vista 7′s problems are not just to do with security however. One of our readers, DaemonFC, has already explained why Vista 7 will fail [1, 2] and another reader has just sent us this pointer to interpretation of Microsoft’s latest publicity stunt.

When things are really screwed up in public or corporate affairs, when your products cause the death of little cute babies you make a harmless girl your corporate spokesperson on an issue who makes a pretty face.

This Larson-Smith campaign is like Swanlake in Russian television.

I work in that PR business and I know the rules of the game, so I must admit that her selection makes me feel really scared and the way she is set in scene shows that Julie Larson-Green is just a marketing communicator, an image campaign. Honestly, I thought Win7 would just be a fixed Vista with some “visible changes”. I didn’t know things went that wrong:

I didn’t knew that Windows 7 was expected to become a real mess. “Rumour has it Larson-Green is already working on Windows 8, but she’s obviously also still tweaking the user experience in Windows 7″. You see what I mean?

Why do you write it so diplomatic?

“So, when details of Office 2007 made their way onto the net, with information about the new interface, I immediately wanted to know who on earth was the person who had the determination and skills to put the … gears … in motion. As it turns out, it was a somewhat shy former waitress and customer service person… ”

Larson-Green is the Sarah Palin of Microsoft. McCain learned his lesson, sorry, this is not 1997. Microsoft marketing people became all PC but “We are the Internet”, and we are not your fools.

Adapt or die. I don’t care.

The last time we saw a company doing this routine with a gentle female representative it was Foxconn, just after it had shafted Linux. Foxconn sacked 100,000 employees a few months ago. If the rumours are true, Microsoft may sack some more tonight, but not as many as 50,000 as Cringely has advised.

“Microsoft is unique among proprietary software companies: they are the only ones who have actively tried to kill Open Source and Free Software. It’s not often someone wants to be your friend after trying to kill you for ten years, but such change is cause for suspicion.”

Bradley M. Kuhn (SFLC)

Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

3 Comments

  1. Samuel Mann said,

    April 26, 2009 at 7:27 pm

    Gravatar

    Interesting article that loses all credibility with a truly obnoxious argument about Larson-Green, no wonder we can’t get women into computing.

  2. Yuhong Bao said,

    April 30, 2009 at 12:57 pm

    Gravatar

    Looks like a boot-time rootkit. Does Linux’s boot process have the same design problem? Linux’s most common bootloaders are LILO and GRUB.

  3. Yuhong Bao said,

    April 30, 2009 at 12:58 pm

    Gravatar

    BTW, the server version of Windows 7 is called Server 2008 R2.

What Else is New


  1. Links 1/7/2015: OpenDaylight Lithium, OpenMandriva Lx 2014.2

    Links for the day



  2. Munich Press, Münchner Merkur, Slams the Munich-based EPO

    Pressure on Benoît Battistelli to leave (or be fired) grows as the cronies whom he filled his office with have become a huge public embarrassment to the decades-old European Patent Office



  3. The Shameless Campaign to Paint/Portray Free Software as Inherently Insecure, Using Brands, Logos, and Excessive, Selective Press Coverage

    Some more FUD from firms such as Sonatype, which hope to make money by making people scared of Free/libre software



  4. National Insecurity and Blackmail, Courtesy of Microsoft

    British members of parliament (MPs) outsourced their communication to the number one PRISM company and they are paying the price for it; The US Navy's systems continue to be unbelievably insecure (Windows XP), despite access to the world's biggest nuclear arsenal



  5. Microsoft Keeps Shrinking

    As the era of shrink-wrapped software comes to an end so does Microsoft, whose effort to become a 'cloud' company with online operations has been miserable at best



  6. They 'R' Coming: More Microsoft Money for the Linux Foundation

    The problem with having Microsoft in a Linux Foundation initiative, the R Consortium



  7. Speculations About the EPO's Possible Role in DDOS Attacks

    Readers' views on who might be behind the attacks on this site amid confirmation that it's on the 'targets' list of the EPO



  8. Links 30/6/2015: Linux Mint 17.2, OpenMandriva

    Links for the day



  9. Techrights Confirmed as a Target of EPO Surveillance, With Help From Control Risks Group (CRG)

    Unveiling the cloak of secrecy from long-term surveillance by the European Patent Office (EPO) and a London-based mercenary it hired, bypassing the law



  10. Google's Fight to Keep APIs Free is Lost, Let's Hope Google Continues Fighting

    SCOTUS refuses to rule that APIs cannot be considered copyright-'protected', despite common sense and despite Java (which the case is about) being Free/libre software



  11. Patent Trolls in the Post-Alice World

    A round-up of news about patent trolls in the United States, some of whom are are doing well and some of them not as well



  12. DDOS Attacks Against Techrights

    Information about some of the most recent DDOS attacks against this Web site and the steps to be taken next



  13. The Patent System Not What it Used to be, Large Corporations and Patent Lawyers the Principal Beneficiaries

    A look at some recent patent stories and what can be deduced from them, based on statistics and trends



  14. After Intervention by the Council of Europe Comes a Detailed Summary of the Situation in the European Patent Office (EPO)





  15. IRC Proceedings: May 31st - June 27th, 2015

    Many IRC logs



  16. Links 28/6/2015: Manjaro Linux Cinnamon 0.8.13, VectorLinux 7.1

    Links for the day



  17. Williamson v. Citrix Online (at CAFC) Reinforces Alice v. CLS Bank (at SCOTUS) in Crushing Software Patents

    More patent news from the United States, again serving to indicate that software patents over there are getting weak (harder to defend in court or acquire from the patent office)



  18. Proskauer Rose LLP is Cherry-Picking Cases to Make Software Patents Seem Eligible Despite Alice v. CLS Bank

    Naming and shaming those who are trying to reshape the consensus despite a rather consistent pattern of software patents being rejected



  19. IAM Biased: How IAM 'Magazine' Glorifies Patent Stockpiling

    A look at the bias of one of the most overzealous sites for and by patent lawyers



  20. PATENT Act No Longer in the News... and That's Just Fine

    Putting the PATENT Act aside for the time being, for it has little or no impact on the really problematic patents



  21. The Latest Lies From Microsoft's PR Apparatus/Public Face, Mr. Nadella

    Having spread the outrageous lie that “Microsoft loves Linux” (whilst obviously attacking it in many ways), Microsoft's CEO (essentially Bill Gates' right-hand man) says Microsoft is “one of the biggest contributors to Linux kernel” (because of proprietary software it tries to contaminate it with while violating the terms of the GPL)



  22. Microsoft Jack (Schofield) Promotes Microsoft's Proprietary Lock-in and Calls People Who Recommend Free/Libre Software 'Trolls'

    Jack Schofield, writing for a Bill Gates-funded paper despite claiming to have retired, promotes Microsoft Office and insults all those readers who do not agree with him



  23. The Council of Europe Slams the EPO as Political Pressure Grows for EPO Management to Obey the Law

    Battistelli et al. come under yet more fire as politicians -- many of whom from Battistelli's home country -- become better informed of the EPO's management fiasco, abuses, and scandals



  24. Operating Systems Usage Based on Technical Site Statistics

    ome numbers to show what goes on in sites that do not share information about their visitors (unlike Windows-centric sites which target non-technical audiences)



  25. Links 27/6/2015: Wine 1.7.46, SparkyLinux 4.0

    Links for the day



  26. Proprietary Software on Top of Proprietary Software (AV on Windows) Only an Illusion of Security

    Remarks on the recent revelations about code and communication interceptions targeting insecurity firms and Microsoft's claim that 'transparency' alone would be enough to assure security



  27. The EPO's Circus of Nepotism, Corporatism and Gross Abuse is Promoting the Unitary Patent

    The shameful management of the EPO, which Benoît Battistelli constructed based on his nefarious self-serving agenda, keeps pushing forth in a direction that greatly harms European citizens while mistreating the EPO's technical staff (scientists and examiners)



  28. Links 26/6/2015: Ardour 4.1, GNOME 3.17.3 Released

    Links for the day



  29. An Estimated 1,000 EPO Staff in Munich Demonstrated Against EPO Management Yesterday Afternoon

    Earliest coverage of yesterday's protest against EPO corruption and abuses



  30. Microsoft Windows So Insecure That Even Fonts Are Remotely Exploitable

    Windows userbase is once again under serious threat and high risk because something as simple as fonts (rendering of text/pixels on the screen) isn't done securely in Windows


CoPilotCo

RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

CoPilotCo

Recent Posts