11.05.09

Gemini version available ♊︎

Vista 7 as Insecure as Predecessors, Shows Sophos

Posted in Microsoft, Security, Vista 7, Windows at 4:34 am by Dr. Roy Schestowitz

Smart card

Summary: Security news reveals high vulnerability levels in Vista 7, shoddy patching practices, more problems

AS we have shown all along, Vista 7 does nothing to improve security. We provided evidence in posts such as:

  1. Cybercrime Rises and Vista 7 is Already Open to Hijackers
  2. Vista 7: Broken Apart Before Arrival
  3. Department of Homeland Security ‘Poisoned’ by Microsoft; Vista 7 is Open to Hijackers Again
  4. Vista 7 Security “Cannot be Fixed. It’s a Design Problem.”
  5. Why Vista 7 Could be the Least Secure Operating System Ever
  6. Journalists Suggest Banning Windows, Maybe Suing Microsoft Over DDoS Attacks
  7. Vista 7 Vulnerable to Latest “Critical” Flaws
  8. Vista 7 Seemingly Affected by Several More “Critical” Flaws This Month
  9. Reason #1 to Avoid Vista 7: Insecurity
  10. Vista 7 Left Hijackable Again (Almost a Monthly Recurrence)

Sophos has produced results from some tests which confirm that Vista 7 is as insecure as predecessors.

Out-of-the-box Windows 7 machines are still vulnerable to eight out of ten viruses, according to a test by security firm Sophos.

The experiment proves that the improved User Account Control (UAC) features built into Windows 7 are not enough and that additional anti-virus protection is still required. In fairness to Redmond, Microsoft crystal clear that anti-virus remains a necessary add-on to Windows PCs.

“80 percent of viruses love Windows 7″ says another headline.

According to one leading security research lab, Windows 7 is vulnerable to an astonishing 8 out of 10 viruses it was exposed to during testing. But wait a minute, just how astonishing is this, really?

SJVN has this new article which shows that Microsoft cannot even patch properly. We mentioned this yesterday.

It wasn’t just the server programs that got fouled up. Internet Explorer got hosed as well. One mistake scrambled Web page elements, while another causes a “Type Mismatch” script error on sites that use VBScript or a mix of VBScript and JavaScript. This particular foul-up nails every version of Internet Explorer from 5.01 to Windows 7′s IE 8. Remember, I did tell you that Windows 7 didn’t actually improve Windows’ security.

Oh, and, this just in, Microsoft recently issued a fix to a Microsoft Office patch from August that could let someone take over your computer . My goodness, it’s no wonder that some companies have staffers that do nothing but try to keep on top of Microsoft’s patches, and re-patches, and re-re- well you get the idea.

As for me, I’d rather spend my time working with my Linux programs rather working on my Windows programs. At least with Linux when something is fixed, chances are, it’s really fixed.

Windows botnets have Facebook blamed for being used as a messaging relay and The Register has a new report on Trojans versus banking. Some company tries making money out of it.

The fight against banking Trojans and phishing attacks has stepped up a gear with the launch of a new product on Wednesday targeted at securing online transactions.

The saddest thing to all of us who use the Internet or fund the banks is that Vista 7 will do nothing to resolve the botnet epidemic. Microsoft passes the costs to others (the externalities).

“Spam will be a thing of the past in two years’ time.”

Bill Gates, 2004

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

Decor ᶃ Gemini Space

Below is a Web proxy. We recommend getting a Gemini client/browser.

Black/white/grey bullet button This post is also available in Gemini over at this address (requires a Gemini client/browser to open).

Decor ✐ Cross-references

Black/white/grey bullet button Pages that cross-reference this one, if any exist, are listed below or will be listed below over time.

Decor ▢ Respond and Discuss

Black/white/grey bullet button If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

A Single Comment

  1. dyfet said,

    November 5, 2009 at 7:47 pm

    Gravatar

    Perhaps someone should coin the term “security through obscenity” to describe their security model ;).

DecorWhat Else is New


  1. Links 31/05/2023: Inkscape’s 1.3 Plans and New ARM Cortex-A55-Based Linux Chip

    Links for the day



  2. Gemini Links 31/05/2023: Personality of Software Engineers

    Links for the day



  3. Links 31/05/2023: Armbian 23.05 Release and Illegal UPC

    Links for the day



  4. IRC Proceedings: Tuesday, May 30, 2023

    IRC logs for Tuesday, May 30, 2023



  5. Gemini Protocol About to Turn 4 and It's Still Growing

    In the month of May we had zero downtime (no updates to the system or outages in the network), which means Lupa did not detect any errors such as timeouts and we’re on top of the list (the page was fixed a day or so after we wrote about it); Gemini continues to grow (chart by Botond) as we’re approaching the 4th anniversary of the protocol



  6. Links 31/05/2023: Librem Server v2, curl 8.1.2, and Kali Linux 2023.2 Release

    Links for the day



  7. Gemini Links 31/05/2023: Bayes Filter and Programming Wordle

    Links for the day



  8. [Meme] Makes No Sense for EPO (Now Connected to the EU) and Staff Pensions to be Tied to the UK After Brexit

    It seems like EPO staff is starting to have doubts about the safety of EPO pensions after Benoît Battistelli sent money to reckless gambling (EPOTIF) — a plot that’s 100% supported by António Campinos and his enablers in the Council, not to mention the European Union



  9. Working Conditions at EPO Deteriorate and Staff Inquires About Pension Rights

    Work is becoming a lot worse (not even compliant with the law!) and promises are constantly being broken, so staff is starting to chase management for answers and assurances pertaining to finances



  10. Links 30/05/2023: Orc 0.4.34 and Another Rust Crisis

    Links for the day



  11. Links 30/05/2023: Nitrux 2.8.1 and HypoPG 1.4.0

    Links for the day



  12. Gemini Links 30/05/2023: Bubble Version 3.0

    Links for the day



  13. Links 30/05/2023: LibreOffice 7.6 in Review and More Digital Restrictions (DRM) From HP

    Links for the day



  14. Gemini Links 30/05/2023: Curl Still Missing the Point?

    Links for the day



  15. IRC Proceedings: Monday, May 29, 2023

    IRC logs for Monday, May 29, 2023



  16. MS (Mark Shuttleworth) as a Microsoft Salesperson

    Canonical isn’t working for GNU/Linux or for Ubuntu; it’s working for “business partners” (WSL was all along about promoting Windows)



  17. First Speaker in Event for GNU at 40 Called for Resignation/Removal of GNU's Founder

    It’s good that the FSF prepares an event to celebrate GNU’s 40th anniversary, but readers told us that the speakers list is unsavoury, especially the first one (a key participant in the relentless campaign of defamation against the person who started both GNU and the FSF; the "FSFE" isn't even permitted to use that name)



  18. When Jokes Became 'Rude' (or Disingenuously Misinterpreted by the 'Cancel Mob')

    A new and more detailed explanation of what the wordplay around "pleasure card" actually meant



  19. Site Updates and Plans Ahead

    A quick look at or a roundup of what we've been up to, what we plan to publish in the future, what topics we shall focus on very soon, and progress moving to Alpine Linux



  20. Links 29/05/2023: Snap and PipeWire Plans as Vendor Lock-in

    Links for the day



  21. Gemini Links 29/05/2023: GNU/Linux Pains and More

    Links for the day



  22. Links 29/05/2023: Election in Fedora, Unifont 15.0.04

    Links for the day



  23. Gemini Links 29/05/2023: Rosy Crow 1.1.1 and Smolver 1.2.1 Released

    Links for the day



  24. IRC Proceedings: Sunday, May 28, 2023

    IRC logs for Sunday, May 28, 2023



  25. Daniel Stenberg Knows Almost Nothing About Gemini and He's Likely Just Protecting His Turf (HTTP/S)

    The man behind Curl, Daniel Stenberg, criticises Gemini; but it's not clear if he even bothered trying it (except very briefly) or just read some inaccurate, one-sided blurbs about it



  26. Links 29/05/2023: Videos Catchup and Gemini FUD

    Links for the day



  27. Links 28/05/2023: Linux 6.4 RC4 and MX Linux 23 Beta

    Links for the day



  28. Gemini Links 28/05/2023: Itanium Day, GNUnet DHT, and More

    Links for the day



  29. Links 28/05/2023: eGates System Collapses, More High TCO Stories (Microsoft Windows)

    Links for the day



  30. IRC Proceedings: Saturday, May 27, 2023

    IRC logs for Saturday, May 27, 2023


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts