Eye on Microsoft: Ransomware, Botnets, Critical Flaws, and Insecure Microsoft File Types
- Dr. Roy Schestowitz
- 2009-07-28 07:18:43 UTC
- Modified: 2009-07-28 07:18:43 UTC
●
Smut page ransomware Trojan ransacks browsers
Russian cybercrooks have come up with a variant of ransomware scams, which works by displaying an invasive advert for online smut in users' browsers that victims are extorted to pay to remove.
●
The Business of Botnets
Kaspersky Lab released some interesting statistics recently in a technical whitepaper. As part of its research into the cyber-underground, the company took a look at how botmasters are pricing the networks under their control.
●
Microsoft to fix critical hole in IE
In a rare move, Microsoft on Friday said it would be releasing security updates on Tuesday--outside of its monthly patch cycle--for a critical vulnerability in Internet Explorer and a moderate vulnerability in Visual Studio.
●
Microsoft to Issue Emergency Patches Next Week
The advance notification advisory that Microsoft released about these upcoming patches doesn't say so explicitly, but a spokesperson for the company confirmed that the updates will address a critical security flaw in collection of code that Microsoft uses in a number of places in Windows. Having a vulnerability in this so-called "code library" is especially dangerous because Microsoft also provides this library to third-party software makers to help them build programs that can leverage certain built-in features of Windows.
●
Insecure by design: MS Office formats
You see, when you're opening an Office document today, you're not just opening static words, images, or numbers. You're actually starting a program that uses Microsoft Office as its interpreter. And, no matter whether you're using Word 2,0 formats or the 2008's 7,000+ pages mis-mash of 'standard' ECMA-376 Office Open XML file formats, there is no built-in network security layer. Instead, there is a mis-mash of fixes for one problem or the other.
Also see:
Emergency, Botnets, and No Remedy
Recent Techrights' Posts
- Computers Got Smaller, So GNU/Linux Got Bigger
- Many people here recognise the lack of urgency (or need) to get expensive new laptops
- GNU/Linux Grows at Windows' Expense and Microsoft Trolls Infest and Maliciously Target Articles About It
- Microsoft is - and has long been - organised crime
- They Say I'm Mr. Bombastic
- They didn't take good lawyers
-
- Links 09/06/2025: Science, Hardware Projects, and Democracy Receding
- Links for the day
- BetaNews is a Plagiarism and LLM Slop Hub, the Chief Editor Isn't Addressing This Problem Anymore
- SS Fagioli is basically a parasite leeching off or exploiting other people's work
- Links 09/06/2025: Chaos in Los Angeles and Hurricane Season
- Links for the day
- Links 09/06/2025: Windows TCO and Many Data Breaches
- Links for the day
- Abuse Inside the Polish Patent Office (UPRP) - Part VI: Political Stunts by Former President Edyta Demby-Siwek and the Connection to Profound Corruption at EUIPO
- it's like a money-laundering operation where one politician rewards another at taxpayers' expense
- Gemini Links 09/06/2025: Pipelines and Splitgate
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Sunday, June 08, 2025
- IRC logs for Sunday, June 08, 2025
- Links 08/06/2025: Tiananmen Carnage Censorship Persists, North Korean Goes Offline
- Links for the day
- Gemini Links 08/06/2025: Love as an Ethnographic Method and Monitorix Gemini-Frontend v0.1
- Links for the day
- Links 08/06/2025: Exposure of More GAFAM Surveillance and Social Security Records Compromised
- Links for the day
- Linux Foundation is a Mediator for Microsoft et al, Not for Small Companies That Support Rather Than Attack the GPL
- Many people still wrongly assume that because it is called "Linux Foundation", then it is pro-Linux and represents the same mindset
- This Past Friday, Confirming What We Said All Along About Brett Wilson LLP: It's Shrinking, Has Considerable Debt, Loss of Net Assets Despite the Microsoft SLAPP Money
- The documents only became publicly available less than 2 days ago
- Some of the Many Reasons We Sued Microsofters for Harassment
- perpetrators of harassment
- For 20 Years Many People Were Sharecropping for Canonical's Oligarch, Now He's Deleting All Their Contributions
- "Ubuntu has erased instead of archiving the trove of material at Ubuntu Forums"
- There Was Always Too Much 'Crazy Stuff' Going on Around Freenode
- What many IRC users lost sight of
- Exposing Crime is Not a Crime (It Never Was)
- In the eyes of rich and powerful people, those who speak about their crimes are the "criminals"
- GNU/Linux Distros Abandoning Microsoft GitHub
- Will curl be next to leave Microsoft GitHub?
- Expect More XBox Mass Layoffs Soon If the Rumours Are True
- From a Microsoft media operative
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Saturday, June 07, 2025
- IRC logs for Saturday, June 07, 2025
- Europe Needs to Move Away From GAFAM; The Sooner, the Better
- Europe - not just the EU - must abandon GAFAM as soon as possible
- The Issue Isn't GNOME's Promotion of Diversity But GNOME Corruption, Abuse, Censorship, and Worse
- So-called "Conservative" (republican, pro-Trump, bigoted) people want you to think the problem with GNOME is politics
- When the News Sources Become Scarce and Increasingly Full of Polluted/Contaminated 'Content' (With LLM Slop and Slop Images)
- Integrity matters
- "Linux" Sites That Spew Out LLM Slop
- We're lacking enough material for another "Slopwatch"
- Abuse Inside the Polish Patent Office (UPRP) - Part V: Breaking the Law, Just Like EPO
- We'll hopefully cover some of the pertinent details later this year
- Links 08/06/2025: Security Lapses, CISA Cuts, and More
- Links for the day
- Gemini Links 07/06/2025: Mime Types and Geminisphere Introduction
- Links for the day
- Links 07/06/2025: Slop Companies Retain All Private Data, More Books Banned in the US
- Links for the day
- Gemini Links 07/06/2025: "A Monk's Guide to Happiness" and "Wireless Earbuds"
- Links for the day
- Links 07/06/2025: More Rumours of Mass Layoffs in Microsoft's XBox Division, New COVID Variant
- Links for the day
- Drug Addiction is a Real Problem, It Destroys Families
- a rather sensitive matter
- Abuse Inside the Polish Patent Office (UPRP) - Part IV: Political Scrutiny and Errors/Inconsistencies in Official Documents
- When such organisations receive scrutiny they start focusing on cover-up and muzzling of facts (or crushing people who say the truth)
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Friday, June 06, 2025
- IRC logs for Friday, June 06, 2025