Eye on Microsoft: Ransomware, Botnets, Critical Flaws, and Insecure Microsoft File Types
- Dr. Roy Schestowitz
- 2009-07-28 07:18:43 UTC
- Modified: 2009-07-28 07:18:43 UTC
●
Smut page ransomware Trojan ransacks browsers
Russian cybercrooks have come up with a variant of ransomware scams, which works by displaying an invasive advert for online smut in users' browsers that victims are extorted to pay to remove.
●
The Business of Botnets
Kaspersky Lab released some interesting statistics recently in a technical whitepaper. As part of its research into the cyber-underground, the company took a look at how botmasters are pricing the networks under their control.
●
Microsoft to fix critical hole in IE
In a rare move, Microsoft on Friday said it would be releasing security updates on Tuesday--outside of its monthly patch cycle--for a critical vulnerability in Internet Explorer and a moderate vulnerability in Visual Studio.
●
Microsoft to Issue Emergency Patches Next Week
The advance notification advisory that Microsoft released about these upcoming patches doesn't say so explicitly, but a spokesperson for the company confirmed that the updates will address a critical security flaw in collection of code that Microsoft uses in a number of places in Windows. Having a vulnerability in this so-called "code library" is especially dangerous because Microsoft also provides this library to third-party software makers to help them build programs that can leverage certain built-in features of Windows.
●
Insecure by design: MS Office formats
You see, when you're opening an Office document today, you're not just opening static words, images, or numbers. You're actually starting a program that uses Microsoft Office as its interpreter. And, no matter whether you're using Word 2,0 formats or the 2008's 7,000+ pages mis-mash of 'standard' ECMA-376 Office Open XML file formats, there is no built-in network security layer. Instead, there is a mis-mash of fixes for one problem or the other.
Also see:
Emergency, Botnets, and No Remedy
Recent Techrights' Posts
- Only Days After Mass Layoffs in Microsoft's Azure There Are Headlines About Much-Expected XBox Layoffs
- XBox as a console is basically dead or "fast-dying"
- SLAPP Censorship - Part 103 Out of 200: Telling People What They Know and Don't Know About Death Threats They Receive
- patronising letters sent on behalf of the Serial Strangler from Microsoft
- IBM Genies in the Bottle
- for ordinary people working who at at IBM, it's not hard to see that IBM is floundering
-
- Today There's a Massive EPO Strike (Like Every Friday), Workers Explain Further Cuts Despite the EPO Making More Income by Granting Illegal Patents (or Invalid Patents Illegally)
- "Recent exchange with the Administration on the implications of the SAP on the Education and Childcare Allowance"
- The Cyber Show: Remember That Code is Art
- The article is very long, very profound, and speaks of "the next installation"
- Communicating With Freedom - Part IV - Quibble Now in quibble.chat, Open for Contributions Via Codeberg
- Today we continue the series about Quibble
- European Patent Office (EPO) Series: The Importance of Having "Pals from the Palacete"
- for his reappointment bid to succeed, Campinos will need to be able to rely on the support of both the Portuguese Prime Minister, Luís Montenegro, and the President of the European Council, António Costa
- Cyber Show on How Updates or Upgrades Break Workflows, Even in Free Software
- "We did a big upgrade on the AV production pipeline"
- Discussions About IBM Layoffs in June, Including by RTO and PIPs
- mass layoffs are becoming increasingly difficult to conceal
- Gemini Links 12/06/2026: Decks and Work Essay
- Links for the day
- "Rolling Strikes" Continue at the European Patent Office, the Administrative Council Needs to Take Action Against Crooked Office Management
- This coming weekend we'll talk about some of the other issues and concerns expressed by the union
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Thursday, June 11, 2026
- IRC logs for Thursday, June 11, 2026
- Links 11/06/2026: Disputes Over Copyright Infringement, Failure to Meet Climate Goals, "ChatGPT Caught Recommending “Products” That Are Just Scams"
- Links for the day
- Gemini Links 11/06/2026: Programmable Systems and Slop "is Coming for Your Serifs"
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Wednesday, June 10, 2026
- IRC logs for Wednesday, June 10, 2026
- Links 11/06/2026: LF Openwashing of Slop and "Azerbaijan Bans TikTok and Other Social Media Apps in School"
- Links for the day
- European Patent Office (EPO) Series: The Centre (in Portugal) Falls Apart…
- Luís Montenegro became embroiled in a conflict-of-interest controversy
- IBM Lost About 18% of Its "Market Value" This Month
- In IBM's case, a lot of the latest "pump" was Arvind's "quantum" hype/fantasy
- Gemini Links 10/06/2026: Signal to Noise, Cancer, and Permacomputing
- Links for the day
- Links 10/06/2026: More Microsoft Layoffs, Sweden to "Ban Mobile Phones in Schools"
- Links for the day
- Communities and "Prosumers."
- today's meetup will be about community
- Gemini and Gopher Links 10/06/2026: Roasting, Changes, and Harms of Slop
- Links for the day
- Microsoft Azure Shrinking With More Mass Layoffs
- "Reports suggest the layoffs will impact close to 200 out of 400 workers, who are set to cease employment at Azure on July 6"
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Tuesday, June 09, 2026
- IRC logs for Tuesday, June 09, 2026