Eye on Microsoft: Ransomware, Botnets, Critical Flaws, and Insecure Microsoft File Types
- Dr. Roy Schestowitz
- 2009-07-28 07:18:43 UTC
- Modified: 2009-07-28 07:18:43 UTC
●
Smut page ransomware Trojan ransacks browsers
Russian cybercrooks have come up with a variant of ransomware scams, which works by displaying an invasive advert for online smut in users' browsers that victims are extorted to pay to remove.
●
The Business of Botnets
Kaspersky Lab released some interesting statistics recently in a technical whitepaper. As part of its research into the cyber-underground, the company took a look at how botmasters are pricing the networks under their control.
●
Microsoft to fix critical hole in IE
In a rare move, Microsoft on Friday said it would be releasing security updates on Tuesday--outside of its monthly patch cycle--for a critical vulnerability in Internet Explorer and a moderate vulnerability in Visual Studio.
●
Microsoft to Issue Emergency Patches Next Week
The advance notification advisory that Microsoft released about these upcoming patches doesn't say so explicitly, but a spokesperson for the company confirmed that the updates will address a critical security flaw in collection of code that Microsoft uses in a number of places in Windows. Having a vulnerability in this so-called "code library" is especially dangerous because Microsoft also provides this library to third-party software makers to help them build programs that can leverage certain built-in features of Windows.
●
Insecure by design: MS Office formats
You see, when you're opening an Office document today, you're not just opening static words, images, or numbers. You're actually starting a program that uses Microsoft Office as its interpreter. And, no matter whether you're using Word 2,0 formats or the 2008's 7,000+ pages mis-mash of 'standard' ECMA-376 Office Open XML file formats, there is no built-in network security layer. Instead, there is a mis-mash of fixes for one problem or the other.
Also see:
Emergency, Botnets, and No Remedy
Recent Techrights' Posts
- SLAPP Censorship - Part 86 Out of 200: The Position of Courts on Computer-Generated Lawsuits and Filings From Another Continent (Made by Two Men Who Work for Slop Companies)
- Lawsuits by proxy from California
-
- A Promise IBM/Red Hat Could Not Keep
- "all about control, not so much optics."
- Links 25/05/2026: Russia Lobbing Oreshnik Ballistic Missile Again, Slop Comes Under More Fire
- Links for the day
- Gemini Links 25/05/2026: Injury in Gym and Abusive LLMs DDoSing Software Developers While Misusing Their Code
- Links for the day
- A 'Bank Holiday' When National Debt Doubles in a Decade
- Maybe it's time to rename "Bank Holidays"
- Links 25/05/2026: Lingering Environmental Concerns and Domain Registrars Targeted for Unmasking
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Sunday, May 24, 2026
- IRC logs for Sunday, May 24, 2026
- Gemini Links 24/05/2026: Impressions of Auckland, the Age of Left or Right Extremism, and .zim files
- Links for the day
- Microsoft's 'Hiring Freeze' (Layoffs) and Salary Freeze (While Inflation Approaches Double-Digit Rates)
- If they get replaced by anyone, it'll be low-paid folks in low-salary regions [...] workers' stress levels shoot up, compensation goes down
- Slop Will Not End Humanity, The Pushers of It Do (Artificial Scarcities and Global Warming)
- Causing hunger and poverty in the name of "computation"
- How Can the 'Broligarchs' Love Us When They Don't Even Love Themselves?
- Their SLAPPs have their limits
- Death at IBM Due to Overwork
- Dying for IBM is never worth it
- We Publish Less, We Get More Exposure
- UbuntuPit is coming to realise that quantity isn't what comes to matter or truly "count", especially when quantity comes at expense of authenticity
- Codecs and Software Patents - Part IX - GNU Project Has Chosen to Adopt AV1 for Its Videos, Conversion and Additions Underway
- One of our readers is working to help GNU through the maze of software patents and maze of patent lawsuits, which aren't the same thing but are somewhat overlapping issues
- Links 24/05/2026: SoftBank CEO Getting Conned by Scam Altman, Hotter 2026 and El Nino With Growing Impact
- Links for the day
- Links 24/05/2026: Ebola Outbreak and "Journalists Identify Murder Victims Of Trump’s Boat Strike Program"
- Links for the day
- IAM Magazine is in Effect Dead, It's Now Fused Into Microsoft's Patent Troll (Which It Has Promoted All Along)
- Microsoft-connected patent trolls in Europe [...] Now, in his new job, Wild can use his 'expertise' to help guide blackmail/extortion to better harm Europe's industry
- A Huge Proportion of 'Articles' in The Register MS Are Actually Paid Spam of the Communist Party of China, Selling Compromised (for Wiretapping) Technology
- The Register MS is having a go at becoming a marketing company or "B2B"
- Top Officials Have Just Left Microsoft, Layoffs in Anything But Name
- Microsoft's debt is very fast-growing
- Local Staff Committee The Hague (LSCTH) Meets "Alicante Mafia" at the European Patent Office (EPO)
- Report on meeting with VP1 and his team on 21 April 2026
- UbuntuPit (ubuntupit.com) Has Deleted Slop Pages, Its Slopfarm Experiment Has Failed (Like Always!)
- Turning one's site into a slopfarm is a death knell
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Saturday, May 23, 2026
- IRC logs for Saturday, May 23, 2026
- The "Next Big" Bonus for IBM's CEO Apparently Comes From American Taxpayers While Veteran IBMers Are PIP'd and RA'd (Laid Off)
- the next big thing will be the CEO's bonus
- Links 23/05/2026: Starbucks Scraps Disastrous Slopfest, Colbert’s Final ‘Late Show’
- Links for the day
- Gemini Links 23/05/2026: Poetry, Hobbies, ROOPHLOCH, and More
- Links for the day
- Government Bailouts Won't be Enough to Save IBM
- Bailouts from taxpayers in the US
- Links 23/05/2026: Social Media Bans and Demise of Userbase of LLM Chatbots
- Links for the day
- Legal Letters Are Not Postcards
- It seems like intimidation, nothing more
- SLAPP Censorship - Part 85 Out of 200: The United Kingdom's Rating for Press Freedom Has Improved, But We Can Do Even Better
- we see the US at #64
- Sites Realise That Becoming More Active by Using Bots (LLM Slop) is Self-Destructive
- We'll soon (maybe next year) also show that some of the 85+ KG of legal papers sent our way are computer-generated garbage, which might run afoul of some rules
- European Patent Office (EPO) Strikes Persist, EPO Management Tries to Give False Impression of "Happy Staff"
- EPO is trying to broadcast to the world a totally phony image of itself
- Gemini Links 23/05/2026: Patience, LLM Chatbts Being Bad, and Unexpected Computer Surgery
- Links for the day
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Friday, May 22, 2026
- IRC logs for Friday, May 22, 2026