EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

05.09.09

U.S. Federal Aviation Administration (Windows Shop) Gets Cracked Again

Posted in Microsoft, Security, Windows at 6:34 am by Dr. Roy Schestowitz

Loading

Corollary: People may start caring about computer security not when businesses become less productive but when disaster eventually strikes

WE’VE already shown that the U.S. Federal Aviation Administration (FAA) is relying on a great deal of Windows [1, 2], so it’s not surprising to find it getting cracked again. From the news:

i. FAA admits problems with hackers

According to CNET, the US Federal Aviation Administration has admitted that hackers have broken into the air traffic control mission-support systems several times in recent years. In one case they managed to become ‘insiders’ to the network.

ii. Report: Hackers broke into FAA air traffic control systems

Hackers have broken into the air traffic control mission-support systems of the U.S. Federal Aviation Administration several times in recent years, according to an Inspector General report sent to the FAA this week.

Also in the news in recent days:

i. Researchers Release Bootkit Code Targeting Windows 7

Dubbed Vbootkit 2.0, the software was first presented by researchers Vipin Kumar and Nitin Kumar at the Hack In The Box security conference in Dubai in April. At the conference, the two researchers demonstrated how attackers could circumvent security features implemented in the kernel and gain control over Windows 7 (x64).

ii. Microsoft to patch ‘critical’ PowerPoint hole

Microsoft plans to patch a hole in its PowerPoint presentation program, the company said in an advanced bulletin that was notable because it contained only a single update.

iii. Botnet master hits the kill switch, takes down 100,000 PCs

Those behind the Zeus botnet recently decided to press the big red button, bluescreening 100,000 computers around the globe. Security experts aren’t sure why yet, although they have some ideas.

iv. Windows and Viruses – Made for each other

This is the screenshot of the cnet’s download.com which shows the most popular downloads for windows. The first five positions are taken by anti-virus software :-). Sadly there is no ‘Linux’ download section but ‘Mac’ has a place.

v. Microsoft ‘fixes’ its malware problem

Computerworld has an Microsoft WGA/WAT spokesman quoted as saying: “When we went out and talked to customers, we found that activation was the concept that resonated most strongly with them”.

The quote ends there, but may have ended: “…Like memories of the first time they were kicked in the groin.”

In any case, Microsoft’s draconian licensing enforcement ‘technology’ is malware by its own definition. And it’s forced on the user through EULAs of questionable legality.

There is no advantage to it for the user, only advantages for Microsoft. And renaming it won’t make it more attractive to users or any more palatable.

Maybe someday, smart users will stop buying software products that have a built-in remote off switch.

Name changes never resolve problems, except for perceptual problems.

Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

6 Comments

  1. Needs Sunlight said,

    May 9, 2009 at 7:11 am

    Gravatar

    Keep in mind, the FAA knows better and has experienced at least one Windows- based shutdown of the World’s eighth largest economy:

    http://www.techworld.com/opsys/news/index.cfm?newsid=2275

    http://www.securityfocus.com/news/9729

    http://www.ccsce.com/pdf/Numbers_CA_Rank.pdf

    FWIW, California is ranked just behind Italy.

    Roy Schestowitz Reply:

    Yes, it’s a Windows problem.

    The Los Angeles Times reported that the outage was the result of a worker neglecting to perform a monthly reset of a Windows-based control system, resulting in its automatic shutdown after 49.7 days of operation. A backup system also failed.

    Microsoft server crash nearly causes 800-plane pile-up

    twitter Reply:

    The FAA has made some tennative moves away from M$, but apparently has not made the jump to sanity. In 2006, they moved some servers to Red Hat. In 2007 they said no to Vista and considered dumping Windows completely for GNU/Linux. The FAA’s CIO, David Bowen, was quoted at the time about “business case” and problems with compatibility and continued availability of XP rather than security and freedom. He mentions security here but OS is not part of the discussion. A sane discussion would be about getting Windows out of airports entirely because a single compromised machine can do a lot of damage. Every airport I visit has M$ junk prominently placed, often with big error messages displayed instead of information. The FAA has the authority to fix this and should.

    When reading these stories, it is difficult to know if the incompetence comes from the reporter or the FAA. Bowen’s background is in economics and business which is decried, somewhat unfairly here. An older CV is published here. No mention of computing languages or development is made, which may be why it has taken him so long to see the value of free software despite managing so many computers over the last 25 years. He has a guilty hand in the health care mess, having come from Blue Shield. Still, we know how well managed most of the press is when it comes to M$ trash. It is no more surprising to find smears against anyone in power who considers moving to GNU/Linux than it is to find complete incompetents in power. At this point, competent people not only realize what a security disaster Windows is, they realize how it is designed to never properly interact with other systems. Competent people do what Lowes did, they migrate completely away and do so at once. Bowes has indicated he thinks this way, but it is impossible to tell through the reporting that I have found.

  2. ricardo nunes said,

    May 9, 2009 at 7:43 am

    Gravatar

    OSOR – The Swiss company Skysoft has started development of Albatross, a set of open source applications for air traffic controllers. The project’s website was unveiled on 16 March.

    The software will be published under a GNU Public Licence. The company has not yet decided which version of the GPL will be used.
    http://www.osor.eu/news/company-opens-development-airport-traffic-management-software

  3. Al said,

    May 12, 2009 at 1:54 am

    Gravatar

    It is the incompetence of the security and administration that causes theese problems everys single time. And you people think running open source is a good idea for these morons?? If they can not properly administer a Windows environment how the hell do you expect them to to deal with Linux or Unix??? Please tell me?? So the Windows bashing may be all well and good but let’s get the facts strait in any one of the cases like this you had incompetent people as the cause.. When a competent staff and sound policy is in place Windows is just as secure as Linux! Is it much more expensive? Yes … Does it offer the freedom? No…. But do not blame Windows for complete incompetence!!!!

    Hey we are talking about government here so incompetence is a given!!!

    Think about it the FAA is bueracracy and the follow the government model…

    Spend way more than neccessary… Hire any moron that is related or a friend the let them give their moron friends and relatives jobs… Next pay them entirely to much for doing far to little … After that let them take off whenever they want, throw in double time and a half holiday pay for every holiday possible…. Then when it goes wrong blame the taxypayers and corporations!!!

    Yet so many seem to embrace this idea shouting while they rob us blind knowing our taxes are going sky high in the future no matter what you make and yet we shout YES WE CAN…

    Give in to the Obama/Gates (General Electric,NBC,Microsoft) connection….

    Roy Schestowitz Reply:

    NBC ‘news’ is a wholly separate issue. :-)

What Else is New


  1. Links 1/7/2016: New PCLinuxOS Magazine, Mageia 6 Close to Release

    Links for the day



  2. Ignoring the Bascom Hype and the Federal Circuit's Built-in Bias, Software Patents Still Dying in US Courts

    The trend which suggests software patents fade away in the United States, in spite of all the lobbying, remains largely uninterfered



  3. Battistelli's Destructive Actions Will Drive EPO Applicants Away to National Patent Offices, Putting at Risk the Whole EU-Wide (and Beyond) Project

    Battistelli's regressive policies and extremely bad behaviour increasingly motivate people to avoid the EPO, which serves to reinforce the observation that Battistelli has become an existential risk to the EPO with his huge spendings on self-glorification, militarisation, and dubious secret contracts



  4. As Expected, 'Team UPC' Continues Fighting for Its Project's Survival in Spite of 'Brexit'

    The desperate attempts to race to the bottom with the Unitary Patent Court and Battistelli's misguided effort to reduce patent quality and make up for it with greater patent quantity, in addition to increased fees (to discourage appeals, withdrawals etc.)



  5. Goodbye Halo, Hello Revisionism (or How Patent Profiteers Perfume a Terrible SCOTUS Decision That Helps Patent Trolls)

    A short review/overview of this past week's coverage regarding Halo (the Halo v Pulse case) -- a SCOTUS decision that will help patent trolls in the United States



  6. Realistic English Translation of EPO Announcement About Crushing of Patent Quality

    The EPO's statement which proves Eric Blair (George Orwell) right, carefully rewritten to better explain what Battistelli and his cronies have just done to bring the EPO's status to an all-time low



  7. Great News: The US Supreme Court Shoots Down Software Patents Again

    The outcome of the US Supreme Court refusing to intervene in the Sequenom v Ariosa case -- a case which would have put at risk the strongly-worded Alice and Mayo decisions (SCOTUS level)



  8. No Expectation of the US Patent System Getting Fixed Any Time Soon

    On the agenda of the supposedly 'liberal' side (hawkish and corporatist in practice) there's no reason for Hope of Change and new data suggests that patent practices are gradually ebbing away in the United States



  9. A System in Their Back Pockets: Protecting Large Corporations in High-Profile Patent Cases

    A couple of new examples of patent cases where the bigger company (with deeper pockets) wins, either by injunctions against small companies or by invalidating the patents of smaller companies



  10. The European Patent Organisation's Administrative Council Helps Benoît Battistelli Destroy Patent Quality for the Sake of 'Production'

    In secretive sessions behind closed doors Battistelli and the Administrative Council conspired to send the no-longer-independent boards of appeal to exile, assuring that patent quality will nosedive and make the Office akin to a registration/filing office



  11. At the European Patent Organisation the Administrative Council Does Not Care About Staff

    The Administrative Council (AC) of the European Patent Organisation continues to show carelessness and apathy if not complicity by maintaining a deeply heartless approach and blind support for a President with 0% approval ratings (among polled staff)



  12. Links 1/7/2016: Enlightenment 0.21.0, Peppermint 7, New Mint

    Links for the day



  13. EPO Leak: Administrative Council's Latest Meeting Report (Updated)

    The outcome of the Administrative Council's meeting, where Battistelli managed to avoid earthquakes and basically did just about everything he wanted, reinforcing the perception that there is no oversight



  14. Publicly-Available Information About the Meeting of the EPO's Administrative Council

    The EPO "crisis" -- as Board 28 called it -- lingers on because no substantial steps were taken towards Battistelli's removal from Office for his violation of Office rules (his own rules) among other laws that Eponia perceives itself as exempt from



  15. Battistelli's Last Moves Are Desperate Attempts to Crush the Messenger (SUEPO), Which Will Almost Certainly Backfire on (if Not Fire) Battistelli

    By implicitly declaring a war on those who speak truth to power or those who are associated with perceived truth-tellers, Battistelli reinforces the perception that he is protecting the bad people at all cost (even his very own career)



  16. EPO Staff Representative Jesus Areso Explains the Crisis to the Administrative Council

    An intervention by an EPO Central Staff Committee (CSC) member who is under gag orders from Battistelli's regime and cannot speak about his case, which apparently involves truly severe disciplinary actions for merely helping or contributing to a staff survey (not controlled by and paid for by Battistelli)



  17. Shadows of Alleged Criminality Over the European Patent Office (EPO)

    Cases against Željko Topić, a Vice-President at the European Patent Office, are moving forward in Croatia, where he still faces many criminal charges



  18. You Know That UPC is Quite Likely Dead (at Least in the UK) When Even Baroness Neville-Rolfe Dodges the Question (Updated)

    The UPC appears to be a dead end, much like Battistelli's career, not only in the UK but in Europe as a whole (it has been all along designed with London/England/UK in mind)



  19. Short Report From Today's EPO Protest in Munich

    A few noteworthy points about the staff protest which coincided with the Administrative Council's meeting earlier today in Munich



  20. Growing Consensus Even Among Patent Professionals That UPC is Dying Everywhere If Not Just in the UK

    The UPC continues to sink as more and more people come to grips with the complexity of the current situation, irrespective of what countries other than the UK do next



  21. Battistelli Attacks Not Only His Staff But Also Patents Themselves (Their Quality) and the Legal Legitimacy Surrounding the EPO

    Battistelli's EPO is having not only reputation problems but also staff retention problems, patent quality problems and problems pertaining to perception of fair trials or justice regarding patents



  22. Battistelli is Creating an Atmosphere of Terror at the EPO While Exploiting Terror Attacks to Garner Sympathy

    "As if Laurent were a terrorist, the Office has imposed a house arrest and has forbidden him to enter the EPO premises," according to SUEPO, writing about one of its members at The Hague who is "maliciously accused via a fabricated procedure"



  23. Rumours That EPO President Battistelli Got Sacked to be Replaced by Christoph Ernst Appear to be Baseless

    Dr. Christoph Ernst is claimed to be the successor (interim or permanent) of the notorious Battistelli, but these claims have little or no evidence to support them



  24. Links 29/6/2016: SteamOS 2.83 Beta, Alpine Linux 3.4.1

    Links for the day



  25. The EPO Has Become Battistelli's Circus and the Administrative Council Has Been Reduced to (Illegal) Circus Animals Controlled With 'Treats'

    Battistelli's attack on justice and on the rule of law is debated among insiders who have grown increasingly impatient with the Administrative Council's tolerance of Battistelli and sometimes even Kongstad's amazing complicity



  26. The Latest Lies About the Unitary Patent (UPC) Would Have Us Believe That It's Alive and Well

    How patents-centric sites (some of which are in bed with the EPO) have responded to the 'Brexit' vote and why they're not telling us the truth about the Unitary Patent scam (often created and promoted by the same people who run and/or fund such sites)



  27. EPO Management Bunker: “The Bailiff Who Came to Deliver the Subpoena was Escorted off the Property by Five Security Guards.”

    Battistelli has essentially turned the European Patent Office (EPO) into a barracks, where he continues to enjoy immunity from the rule of law and discourages those who wish to challenge this immunity



  28. Keeping the Guard and Securing Society From Software Patents

    The policies over which Indians and Europeans have kept guard are being 'stolen' by vested interests



  29. Benoît Battistelli Further Weaponises His EPO 'Stasi' With CA/52/16

    A glimpse at what Benoît Battistelli will shortly attempt to do to the EPO, in order to cement his power in the face of growing opposition from many directions



  30. EPO Caricature: Administrative Council Control of Benoît Battistelli

    Another new caricature regarding the President of the European Patent Office (EPO) and lack of effective oversight from the Administrative Council (European Patent Organisation)


CoPilotCo

RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

CoPilotCo

Recent Posts