EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

05.09.09

U.S. Federal Aviation Administration (Windows Shop) Gets Cracked Again

Posted in Microsoft, Security, Windows at 6:34 am by Dr. Roy Schestowitz

Loading

Corollary: People may start caring about computer security not when businesses become less productive but when disaster eventually strikes

WE’VE already shown that the U.S. Federal Aviation Administration (FAA) is relying on a great deal of Windows [1, 2], so it’s not surprising to find it getting cracked again. From the news:

i. FAA admits problems with hackers

According to CNET, the US Federal Aviation Administration has admitted that hackers have broken into the air traffic control mission-support systems several times in recent years. In one case they managed to become ‘insiders’ to the network.

ii. Report: Hackers broke into FAA air traffic control systems

Hackers have broken into the air traffic control mission-support systems of the U.S. Federal Aviation Administration several times in recent years, according to an Inspector General report sent to the FAA this week.

Also in the news in recent days:

i. Researchers Release Bootkit Code Targeting Windows 7

Dubbed Vbootkit 2.0, the software was first presented by researchers Vipin Kumar and Nitin Kumar at the Hack In The Box security conference in Dubai in April. At the conference, the two researchers demonstrated how attackers could circumvent security features implemented in the kernel and gain control over Windows 7 (x64).

ii. Microsoft to patch ‘critical’ PowerPoint hole

Microsoft plans to patch a hole in its PowerPoint presentation program, the company said in an advanced bulletin that was notable because it contained only a single update.

iii. Botnet master hits the kill switch, takes down 100,000 PCs

Those behind the Zeus botnet recently decided to press the big red button, bluescreening 100,000 computers around the globe. Security experts aren’t sure why yet, although they have some ideas.

iv. Windows and Viruses – Made for each other

This is the screenshot of the cnet’s download.com which shows the most popular downloads for windows. The first five positions are taken by anti-virus software :-). Sadly there is no ‘Linux’ download section but ‘Mac’ has a place.

v. Microsoft ‘fixes’ its malware problem

Computerworld has an Microsoft WGA/WAT spokesman quoted as saying: “When we went out and talked to customers, we found that activation was the concept that resonated most strongly with them”.

The quote ends there, but may have ended: “…Like memories of the first time they were kicked in the groin.”

In any case, Microsoft’s draconian licensing enforcement ‘technology’ is malware by its own definition. And it’s forced on the user through EULAs of questionable legality.

There is no advantage to it for the user, only advantages for Microsoft. And renaming it won’t make it more attractive to users or any more palatable.

Maybe someday, smart users will stop buying software products that have a built-in remote off switch.

Name changes never resolve problems, except for perceptual problems.

Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

6 Comments

  1. Needs Sunlight said,

    May 9, 2009 at 7:11 am

    Gravatar

    Keep in mind, the FAA knows better and has experienced at least one Windows- based shutdown of the World’s eighth largest economy:

    http://www.techworld.com/opsys/news/index.cfm?newsid=2275

    http://www.securityfocus.com/news/9729

    http://www.ccsce.com/pdf/Numbers_CA_Rank.pdf

    FWIW, California is ranked just behind Italy.

    Roy Schestowitz Reply:

    Yes, it’s a Windows problem.

    The Los Angeles Times reported that the outage was the result of a worker neglecting to perform a monthly reset of a Windows-based control system, resulting in its automatic shutdown after 49.7 days of operation. A backup system also failed.

    Microsoft server crash nearly causes 800-plane pile-up

    twitter Reply:

    The FAA has made some tennative moves away from M$, but apparently has not made the jump to sanity. In 2006, they moved some servers to Red Hat. In 2007 they said no to Vista and considered dumping Windows completely for GNU/Linux. The FAA’s CIO, David Bowen, was quoted at the time about “business case” and problems with compatibility and continued availability of XP rather than security and freedom. He mentions security here but OS is not part of the discussion. A sane discussion would be about getting Windows out of airports entirely because a single compromised machine can do a lot of damage. Every airport I visit has M$ junk prominently placed, often with big error messages displayed instead of information. The FAA has the authority to fix this and should.

    When reading these stories, it is difficult to know if the incompetence comes from the reporter or the FAA. Bowen’s background is in economics and business which is decried, somewhat unfairly here. An older CV is published here. No mention of computing languages or development is made, which may be why it has taken him so long to see the value of free software despite managing so many computers over the last 25 years. He has a guilty hand in the health care mess, having come from Blue Shield. Still, we know how well managed most of the press is when it comes to M$ trash. It is no more surprising to find smears against anyone in power who considers moving to GNU/Linux than it is to find complete incompetents in power. At this point, competent people not only realize what a security disaster Windows is, they realize how it is designed to never properly interact with other systems. Competent people do what Lowes did, they migrate completely away and do so at once. Bowes has indicated he thinks this way, but it is impossible to tell through the reporting that I have found.

  2. ricardo nunes said,

    May 9, 2009 at 7:43 am

    Gravatar

    OSOR – The Swiss company Skysoft has started development of Albatross, a set of open source applications for air traffic controllers. The project’s website was unveiled on 16 March.

    The software will be published under a GNU Public Licence. The company has not yet decided which version of the GPL will be used.
    http://www.osor.eu/news/company-opens-development-airport-traffic-management-software

  3. Al said,

    May 12, 2009 at 1:54 am

    Gravatar

    It is the incompetence of the security and administration that causes theese problems everys single time. And you people think running open source is a good idea for these morons?? If they can not properly administer a Windows environment how the hell do you expect them to to deal with Linux or Unix??? Please tell me?? So the Windows bashing may be all well and good but let’s get the facts strait in any one of the cases like this you had incompetent people as the cause.. When a competent staff and sound policy is in place Windows is just as secure as Linux! Is it much more expensive? Yes … Does it offer the freedom? No…. But do not blame Windows for complete incompetence!!!!

    Hey we are talking about government here so incompetence is a given!!!

    Think about it the FAA is bueracracy and the follow the government model…

    Spend way more than neccessary… Hire any moron that is related or a friend the let them give their moron friends and relatives jobs… Next pay them entirely to much for doing far to little … After that let them take off whenever they want, throw in double time and a half holiday pay for every holiday possible…. Then when it goes wrong blame the taxypayers and corporations!!!

    Yet so many seem to embrace this idea shouting while they rob us blind knowing our taxes are going sky high in the future no matter what you make and yet we shout YES WE CAN…

    Give in to the Obama/Gates (General Electric,NBC,Microsoft) connection….

    Roy Schestowitz Reply:

    NBC ‘news’ is a wholly separate issue. :-)

What Else is New


  1. The EFF Back to Tackling Software Patents, Not Just Patent Trolls

    Electronic Frontier Foundation lawyers start targeting large companies that exploit patents for intimidation and extortion, not just patent trolling



  2. Microsoft Wants to Devour the Competition (Linux), Devour People's Data

    Refuting the "new Microsoft" propaganda and some ludicrous concept that Microsoft is now "playing nice"



  3. Benoît Battistelli Thinks 'President' is Above the Law, Decides to Ignore the Court's Ruling

    Staff of the EPO is given yet more reasons to protest tomorrow at the British Consulate, for the so-called 'President' of the EPO reminds everyone of the very raison d'être for the protest -- a vain disregard for the rule of law



  4. Links 24/2/2015: Xfce 4.12 a Week Away, GNOME 3.16 Previewed

    Links for the day



  5. Links 23/2/2015: Ubuntu Kylin 14.04.2 LTS, Cinnamon 2.6 Previews

    Links for the day



  6. IRC Proceedings: February 8th - February 21st, 2015





  7. The EPO's Sham 'Internal Investigation' of EPO Vice-President Željko Topić's Affairs

    The EPO never investigated the Željko Topić affair, it only pretends to have investigated (one small aspect, i.e. cherry-picking) using a Benoît Battistelli-controlled group



  8. Links 21/2/2015: GNOME 3.15.90, Google Wins Android Lawsuit

    Links for the day



  9. Microsoft AstroTurfing War on GNU/Linux is Still Going On, But Hidden Better, Uses API as Instrument of Lock-in

    The corruptible press continues to describe blatant attacks (Embrace, Extend, Extinguish) against GNU/Linux and Free software as Microsoft 'embracing' Open Source



  10. Lenovo's Superfish Scandal is Spyware on Top of Spyware (Microsoft Windows), the Problem is Inherently Proprietary Software

    Shifting focus to the root problem, which is neither Lenovo nor its laptops but the non-free programs installed on hardware



  11. Benoît Battistelli Once Again Threatens EPO Staff That 'Dares' to Protest, Battistelli Exploits Terror Attacks to Pretend to Respect Free Speech

    The European Patent Office (EPO) President, Benoît Battistelli, reportedly started threatening -- as before -- staff that decides to exercise the right to assemble and protest against abuses, including the abuses of President Battistelli himself



  12. Links 20/2/2015: Android Studio v1.1, GDB 7.9

    Links for the day



  13. Links 20/2/2015: Bloomberg Joins Linux Foundation, ClearOS Community 6.6.0

    Links for the day



  14. The Chartered Institute of Patent Attorneys Slams the European Patent Office for Structural Failings

    An important letter which we overlooked while writing yesterday's 4 articles about the European Patent Office (EPO); yet another key stakeholder complains



  15. Links 19/2/2015: Hewlett-Packard on Cumulus Linux, Previews of GNOME 3.16 Beta

    Links for the day



  16. Techrights Under Attack Again, Shortly After Important EPO Articles

    Techrights highlights a pattern that is months old; Site faces availability issues shortly after reports about the European Patent Office and its abuses



  17. EPO Staff Protests Against Benoît Battistelli’s Lowering of Patents Quality (Scope Expansion and Software Patents for Profit)

    A protest in Munich in less than 6 days will target Mr. Sean Dennehey, who has helped Battistelli cover up his abuses and crush legitimate critics, whom he deemed illegal opposition as if the EPO is an authoritarian regime as opposed to a public service which taxpayers are reluctantly (but forcibly) funding



  18. Breaking: European Patent Office Sued by Its Own Staff in The Hague, Must Unblock Staff's Voices

    The crooked management of the European Patent Office (EPO) gets in legal trouble after repeated attempts to cover up abuses and suppress criticism



  19. Željko Topić's History in SIPO Leaves a Legacy of Alleged DZIV Vehicles (Bribes), Authorship Abuses, and Intimidation Against Reporters

    Another deep look at Željko Topić's background in Croatia, preceding his very notorious appointment to the EPO where he now serves as Benoît Battistelli's most controversial attack dog



  20. The Old Obsession With Patent Trolls Continues to Distract From Debate About Software Patenting

    A roundup of recent coverage about monopolies on algorithms in the United States



  21. Links 19/2/2015: 64-bit ARM Linux, Chinese New Year

    Links for the day



  22. Links 18/2/2015: Linux Report, FlightGear 3.4

    Links for the day



  23. EPO Scandals: The Story So Far

    An overview of articles about mischief, misconduct and breach of laws at the EPO



  24. Links 17/2/2015: TripleO, Pivotal

    Links for the day



  25. Links 17/2/2015: SystemD 219, Frugalware 2.0 (Rigel) Released

    Links for the day



  26. Željko Peratović Slammed for Whitewashing Željko Topić After Publishing Important Piece on Behalf of Key Sources

    Response from Ivan Kabalin to Zeljko Peratovic's so-called "apology" which is both mysterious and seemingly inadequate as it does nothing to actually explain what was wrong (if anything)



  27. Benoît Battistelli Has Made Oversight of European Patent Office Absolutely Impossible





  28. Microsoft Already Killed Nokia, Don't Let It Kill Android Players Too

    Microsoft's strategy against Android mirrors the company's evil strategy that derailed MeeGo and Nokia



  29. Intel Continues to Attack Software Freedom Through UEFI

    The Trojan horse that Microsoft uses to cement its monopoly on desktops and laptops (making it hard or impossible to install and run GNU/Linux) is also being misused to block Coreboot



  30. Links 16/2/2015: Netrunner 15, Bridge Linux

    Links for the day


CoPilotCo

RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

CoPilotCo

Recent Posts