Eye on Microsoft: Ransomware, Botnets, Critical Flaws, and Insecure Microsoft File Types
- Dr. Roy Schestowitz
- 2009-07-28 07:18:43 UTC
- Modified: 2009-07-28 07:18:43 UTC
●
Smut page ransomware Trojan ransacks browsers
Russian cybercrooks have come up with a variant of ransomware scams, which works by displaying an invasive advert for online smut in users' browsers that victims are extorted to pay to remove.
●
The Business of Botnets
Kaspersky Lab released some interesting statistics recently in a technical whitepaper. As part of its research into the cyber-underground, the company took a look at how botmasters are pricing the networks under their control.
●
Microsoft to fix critical hole in IE
In a rare move, Microsoft on Friday said it would be releasing security updates on Tuesday--outside of its monthly patch cycle--for a critical vulnerability in Internet Explorer and a moderate vulnerability in Visual Studio.
●
Microsoft to Issue Emergency Patches Next Week
The advance notification advisory that Microsoft released about these upcoming patches doesn't say so explicitly, but a spokesperson for the company confirmed that the updates will address a critical security flaw in collection of code that Microsoft uses in a number of places in Windows. Having a vulnerability in this so-called "code library" is especially dangerous because Microsoft also provides this library to third-party software makers to help them build programs that can leverage certain built-in features of Windows.
●
Insecure by design: MS Office formats
You see, when you're opening an Office document today, you're not just opening static words, images, or numbers. You're actually starting a program that uses Microsoft Office as its interpreter. And, no matter whether you're using Word 2,0 formats or the 2008's 7,000+ pages mis-mash of 'standard' ECMA-376 Office Open XML file formats, there is no built-in network security layer. Instead, there is a mis-mash of fixes for one problem or the other.
Also see:
Emergency, Botnets, and No Remedy
Recent Techrights' Posts
- SLAPP Censorship - Part 80 Out of 200: Having Run Out of Time to Meet a Judge's Deadline, Microsoft's Graveley Had Garrett's Lawyers Argued My ~190-Page Defence and CounterClaim (DCC) Was Unclear About My Position
- Nothing could be further from the truth
-
- Links 18/05/2026: Slop-induced Shortages, Solicitors Regulation Authority Says It's Unable to Deal With Complaints Load (So Regulation Does Not Really Exist)
- Links for the day
- Gemini Links 18/05/2026: Ghost Essay and World Wide Web Considered Broken
- Links for the day
- Cooperation and Collaboration, on a More Personal Level
- Rianne, to me, isn't just a wife; she is also my best friend
- IBM Has Payroll Problems (Just Like Microsoft)
- It's a good thing that many nations around the world are, accordingly if not proactively, divesting from GAFAM
- Links 18/05/2026: 25 Years of OLDaily and Dangers of "Living With Too Much Tech"
- Links for the day
- Trips to London
- London isn't a bad place, but it's a long journey and we'd rather stay in Manchester and write about technology
- Working in the Shell (and Fish)
- Yesterday we spent about 5 hours on the shells and fish
- The Corrupt Lecture the Non-Corrupt - Part XXVI - Campinos Has Put Unfit-for-Employment Drug Addicts in Charge of the European Patent Office (EPO)
- How many months has Campinos got left before the delegates show him the door?
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Sunday, May 17, 2026
- IRC logs for Sunday, May 17, 2026
- Gemini Links 18/05/2026: Poetry, Sauna, and GNU Taler
- Links for the day
- "The Society of Media Lawyers" (UK) is a Truly Malicious Anti-Media Lobby Which Helps Rich/Abusive Americans and Hostile Countries Attack Actual Media Workers in the UK
- They typically source their money from aboard to besiege domestic actors (like honest journalists or independent outlets that document suppressed beats/topics)
- Slop Still Waning, Its Momentum is Driven by Companies That Stand to Lose a Lot (or Everything) When the Bubble Pops
- When it comes to LLM slop disguised as news, it's just not working out
- Gemini Links 17/05/2026: arXiv Brings Down the Hammer, UnderPOWERed, and Slopping With Tcl/Tk
- Links for the day
- Links 17/05/2026: Amazon Employees Herded Into Slop, Taiwan Sold Down the River by Cheeto
- Links for the day
- Links 17/05/2026: Society of Media Lawyers (Brett Wilson LLP et al) Lobby for More SLAPPs in the UK, “Courage in Journalism Award” Given in Oppressive Country
- Links for the day
- Finland Needs to Dump Microsoft (Microslop) for National Security Reasons and the Same is True for Hundreds of Countries
- "I don't see why Ryssäs would want Finns to use microslop products..."
- Cyber Show UK is Already Available Over Gemini Protocol
- This past week the total number of active Gemini capsules hit all-time records several times
- Fight Til the End
- This comes to show that persistence pays off
- SLAPP Censorship - Part 79 Out of 200: They Will Soon Reach the 100 KG (Kilograms) Milestone; Wheelbarrows, Not Justice (Quantity of Legal Papers Sent to Us)
- It's about the quality, not quantity (unless your sole aim is to drown out or "flood the zone")
- The Corrupt Lecture the Non-Corrupt - Part XXV - Not Bringing Intelligence to the EPO, Not 'Artificial Intelligence' Either (But Intelligence-Eroding Drugs)
- The EPO was meant to be about science and law. In practice, however, it's about breaking the law and being stoned.
- The Cyber Show on Why Coding is Important and Slop Cannot Change or Replace That
- Hand-crafting one's site has plenty of advantages
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Saturday, May 16, 2026
- IRC logs for Saturday, May 16, 2026
- Gemini Links 17/05/2026: Music Theory, Reticulum Git Repos, and Releasing Kiln
- Links for the day
- Links 16/05/2026: Cuba Plunges Into Darkness (Energy Wasted by Nonsense), Googlebooks as Slop Nonsense (Energy Waste and Time Wasted)
- Links for the day
- Links 16/05/2026: Climate Issues, Free Speech, and Monopolies/Monopsonies
- Links for the day
- Gemini Links 16/05/2026: Retreat and Devuan Manuals
- Links for the day
- SLAPP Censorship - Part 78 Out of 200: Slandering Me for Saying the Truth About Graveley and Garrett's Abuse of Processes, Stacking Dockets
- These are the sorts of things British taxpayers ought to talk about
- "AI" Became a New Name or Placeholder for Debt
- Because they will only ever lose money for this thing with "tokens" or "potential"
- "Microsoft Goodwill and Intangible Assets" Down Two Years in a Row, According to Microsoft
- Microsoft cannot sell these, so what is their real relevance?
- Over at Tux Machines...
- GNU/Linux news for the past day
- IRC Proceedings: Friday, May 15, 2026
- IRC logs for Friday, May 15, 2026
- IBM: Shares Down 30%, Mass Layoffs, IBM Says "Goodwill" Grew by 10% to Over a Third of the Company's Total "Worth"
- According to IBM
- Microsoft LinkedIn Layoffs "Very Likely Higher" Than 1,000 People
- Microsoft is bleeding