EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

12.11.09

Trend Micro: Vista 7 Less Secure Than Vista

Posted in Microsoft, Security, Vista, Vista 7, Windows at 4:47 am by Dr. Roy Schestowitz

UAC

Summary: Trend Micro’s assessment of Vista 7 concurs with previous analyses which say that Vista 7 is a step back when it comes to security

ON several occasions in the not-so-distant past, experts warned that Vista 7 is even less secure than Windows Vista. To give previous examples of security issues in Vista 7:

  1. Cybercrime Rises and Vista 7 is Already Open to Hijackers
  2. Vista 7: Broken Apart Before Arrival
  3. Department of Homeland Security ‘Poisoned’ by Microsoft; Vista 7 is Open to Hijackers Again
  4. Vista 7 Security “Cannot be Fixed. It’s a Design Problem.”
  5. Why Vista 7 Could be the Least Secure Operating System Ever
  6. Journalists Suggest Banning Windows, Maybe Suing Microsoft Over DDoS Attacks
  7. Vista 7 Vulnerable to Latest “Critical” Flaws
  8. Vista 7 Seemingly Affected by Several More “Critical” Flaws This Month
  9. Reason #1 to Avoid Vista 7: Insecurity
  10. Vista 7 Left Hijackable Again (Almost a Monthly Recurrence)

Now comes yet another firm, Trend Micro, claiming that Vista 7 is less secure than Windows Vista:

Windows 7 is less secure out-of-the box than Vista, despite Redmond’s protestations to the contrary, a top security firm has claimed.

Trend Micro said that the default configurations of Windows 7 are less secure than Vista. Raimund Genes, CTO of Trend Micro, said that Windows 7 had sacrificed security for useability – at least for default configurations.

We shall continue to keep track of such important claims.

In other (in)security news yesterday:

i. Scareware slingers flaunt fake MS endorsement

Surfers visiting the URL on the Windows Support site referenced in the scareware from a clean PC will get a 404 ‘page not found’ message. Hacked PC victims will see an apparent endorsement.

ii. Potent malware link infects almost 300,000 webpages

A security researcher has identified a new attack that has infected almost 300,000 webpages with links that direct visitors to a potent cocktail of malicious exploits.

iii. How many people fall victim to phishing attacks?

According to a recently released report, based on a sample of 3 million users collected over a period of 3 months, approximately 45% of the time, users submitted their login information to the phishing site they visited.

The important point to remember is that Vista 7 changes nothing as far as security is concerned. Microsoft and/or its apologists love to defend Windows using the talking point that security issues are the fault of people who do not migrate to the latest version of Windows. It’s a sales pitch.

Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

12 Comments

  1. Yuhong Bao said,

    December 12, 2009 at 11:32 pm

    Gravatar

    “To give previous examples of security issues in Vista 7:“
    I already explained or debunked some of the previous ones. On this one, it is about default configurations of Vista and 7, and I am sure that most of the defaults can be changed.

  2. Yuhong Bao said,

    December 12, 2009 at 11:34 pm

    Gravatar

    On Linux default configurations, one of the most famous disasters was to allow any local users to install packages by default:
    http://lwn.net/Articles/362771/

    your_friend Reply:

    That article in LWN is surprisingly rude and ill informed. It is rude because it paints the changes as ignorant and arrogant if not malicious. It is ill informed because the result is not really a big deal. I would not configure my system that way but I would not be so rude to a software maintainer about it. We’re talking about free software here, love it or change it. Outrage is only proper in the non free software world, where the user has traded their rights for promises of care. Why do you equate the obligations in two models which have such clear differences?

    More fundamentally, why do you try to equate Microsoft and Unix insecurity? Both systems have 30 year security histories and one is obviously better than the other which requires a useless, often abusive, monthly patch. Microsoft’s insecurity is a blight on the internet. Vista and Windows 7 are just as bad as any previous version of Windows. Claims of better security have been made of every previous version, usually with detailed technical descriptions that ignore fundamental flaws that allow attackers remote, root level access. With so long a history of failure, it is unreasonable to expect a change.

    Malicious claims of flaws in competing software is part of Microsoft’s criminal behavior. Their agents religiously defend Windows and make vague threats of doom for others. They have said the same things about Netscape, Mac OS, Unix and GNU/Linux. This has gone on for so long, it is surprising to see that Microsoft credibility lives on.

    Yuhong Bao Reply:

    “Both systems have 30 year security histories and one is obviously better than the other which requires a useless, often abusive, monthly patch.”
    It is not that simple.
    “Malicious claims of flaws in competing software is part of Microsoft’s criminal behavior. ”
    One of the most recent is when MS tried to FUD Chrome Frame.
    “usually with detailed technical descriptions that ignore fundamental flaws that allow attackers remote, root level access.”
    Really, is NT really that fundamentally flawed? I don’t think so, look at ReactOS

    Roy Schestowitz Reply:

    “Malicious claims of flaws in competing software is part of Microsoft’s criminal behavior. ”
    One of the most recent is when MS tried to FUD Chrome Frame.

    Or Google search.

    your_friend Reply:

    Yes, NT was fundamentally flawed. The security record speaks for itself. I know people who had NT hosed over like any other version of Windows. It’s all the same.

    Yuhong Bao Reply:

    http://www.reactos.org/en/about.html

    Roy Schestowitz Reply:

    I’ve taken a look. You have to remember their bias though; they need to justify their own choices.

    your_friend Reply:

    NT as is flawed as it and it’s descendents are worse. That is the well established record. A free software implementation of NT will be better than the thing that Microsoft’s team of poached VMS engineers could throw together but it won’t be NT if it fixes NT’s fundamental and implementation flaws. I consider access control lists poor design, but what do I know? So here are words of wisdom from people who do know. Michael Feathers,

    a willingness to live with a little less to avoid the bigger mess and a willingness to see elegance in the real rather than the vision

    and the famous words of someone who knows all about legacy code, Michael Feathers

    Those who don’t understand UNIX are doomed to reinvent it, poorly.

    Reactos is a nice effort but it’s hard to take seriously anyone who’d say the crazy things on that about page. It would be nice to have a free implementation of Windows to run other user hostile legacy programs. The about page, however, reads like something from Microsoft’s “Get the facts” pages. Someone who knows better should clean that embarrassing mess up.

    your_friend Reply:

    NT is flawed as it is. That’s how the last one should have started. I’m not sure what happened to make it so incoherent looking.

    Roy Schestowitz Reply:

    Wasn’t this reversed?

    Yuhong Bao Reply:

    Yes, it was.

What Else is New


  1. Microsoft-Connected CloudGuru Doesn't Care About GNU/Linux and Now It's Gradually Killing the BSD/Linux-Centric Jupiter Broadcasting (Bought by Linux Academy)

    Assuming Docker is being 'killed' by Microsoft (or at least hijacked to push Windows, Azure and so on) while the GitHub-hosted (Microsoft) CloudGuru, whose co-founder comes from Microsoft, ‘finishes the job’ with Linux Academy and its assets, it’s time to take stock of a pattern/trend that ruins the media too



  2. What Happened to Docker is a Cautionary Tale About the Not-So-New Microsoft

    It’s hardly shocking that Docker collapsed (mass-scale layoffs) after the company had gotten close to Microsoft and got rid of its very own founder (a Red Hat veteran) while the software is being killed off/co-opted by Microsoft (all over the news this week; we’ve omitted links by intention as it’s only puff pieces, no investigative journalism anywhere); we only ask one thing: is anyone paying attention and, if so, what are the lessons learned?



  3. If You Want to Support and Follow Us 'Properly', Really Simple Syndication (RSS) is Most Reliable and Robust to Censorship

    Our longstanding position on social control media (we reject it and don't participate in it) is only proven ever more justified now that the mere idea of fact-checking is seen as controversial if not illegal



  4. Links 29/5/2020: Genode OS 20.05 and FSF Video Conferencing Service

    Links for the day



  5. IRC Proceedings: Thursday, May 28, 2020

    IRC logs for Thursday, May 28, 2020



  6. Weaponised Media Promoting an Illegal Patent System (UPC), Exploiting Major Pandemic in the Process

    The whole 'unitary' scam/ploy (merely a Trojan horse for litigation and low-quality/invalid patents) is being promoted by Thierry Breton as EU Internal Market Commissioner (in spite of illegalities and constitutional issues), merely reinforcing the view that the EU is rather complicit in the abuses perpetrated by Team Battistelli; the media in the pockets of oligarchs and litigation firms (fronting for these oligarchs) plays along, as usual



  7. Links 28/5/2020: OpenSSH 8.3, New Mesa Release, Raspberry Pi 4 News, Fedora 32 Elections

    Links for the day



  8. The EPO Became a Very Radical Institution

    Projection tactics are doomed to say more about the people who utilise them than about anybody else; the EPO has become so autocratic and corrupt that corruption is seen as normal and workers who explain this corruption are framed as "irrational" or "crazy" or "radical"



  9. IRC Proceedings: Wednesday, May 27, 2020

    IRC logs for Wednesday, May 27, 2020



  10. Allegations That Microsoft Will Ruin Besieged Clinics and Hospitals to Retaliate Against Those Who Name the Culprit

    With a broader picture coming into view, as per the above index, we're starting to wrap up the series while issuing a call for more stories and eyewitness testimonies, exposing the nature of attacks on hospitals (those almost always target Microsoft and others' proprietary software, which is technically unfit for purpose)



  11. Microsoft Has Ideas...

    Based on the pattern of media coverage, composed by Microsoft MVPs and Microsoft-affiliated blogs/sites, confusing the public about the meaning of GNU/Linux is reminiscent of an "Extend" phase



  12. ZDNet Proves Our Point by Doing Not a Single Article About Linux (RC7), Only About Linus and Windows Clickbait Junk

    It seems abundantly clear that nobody wants to cover the actual news about Linux and instead it’s all about which PC Linus Torvalds is using (gossip/tabloid); ZDNet‘s latest two articles are an example of this…



  13. UPC Lies That Make One Laugh...

    IP Kat and Bristows (overlaps exist) are still pretending that the UPC is coming because reality doesn’t seem to matter anymore, only self-serving agenda



  14. Canonical Continues to Help Promote Windows Instead of GNU/Linux or Ubuntu

    Thrice in the past week alone Canonical used the official “Ubuntu Blog” to help Microsoft instead of GNU/Linux and it is part of a disturbing trend which lends credibility to jokes or rumours about a Microsoft takeover; it's not like many people use this thing, either (Canonical helps Microsoft shore up a dying/languishing EEE attempt)



  15. Links 27/5/2020: CoreOS Container Linux Reaches Its End-Of-Life, 2020 GNOME Foundation Elections Coming

    Links for the day



  16. IRC Proceedings: Tuesday, May 26, 2020

    IRC logs for Tuesday, May 26, 2020



  17. GNEW Seedlings vs. Free Software Deforestation

    “The idea of the GNEW Project really is about keeping the goals of the GNU Project alive — hopefully, they won’t destroy or co-opt too much of the GNU Project, that people like the Hyperbola devs can’t fix it with BSD.”



  18. Joi Ito Already Admitted on the Record That Bill Gates Had Paid MIT Through Jeffrey Epstein

    An important exhibit for the accurate historical record (because MIT has been trying to deny truth itself)



  19. It's Convenient to Call All Your Critics Nuts and/or Jealous

    Bill Gates antagonists are not motivated by hatred or jealousy but a sense of injustice; spoiled brats who break the law aren’t a source of envy any more than mass murderers are subject of admiration



  20. Real History of Microsoft and How It Became 'Successful'

    New video that contains a portion about the history of Microsoft -- the part paid-for 'journalists' (paid by Microsoft and Bill Gates) rarely or never speak about



  21. Hostility and Aggression Towards Staff That Does Not Use Windows After Windows Takes Entire Hospital Down

    Microsoft Windows, with NSA back doors, continues to take hospitals offline (with records copied by criminals if not stolen by effectively locking the originals out of reach for ransom money); but guess who’s being punished for it…



  22. They Came, They Saw, We Died...

    It cannot be overstated that we're under attack (or a "Jihad" against Linux as Bill Gates himself put it) and failing to act upon it will be costly as time may be running out and our groups are being 'bought off' by Microsoft in rapid succession, as per the plan/strategy



  23. The GitHub Takeover Was an Extension of Microsoft's War on GPL/Copyleft (Because Sharing Code to Anyone But Microsoft is 'Piracy')

    Licences that make it easier for Microsoft to 'steal' (or a lot harder for Free software to compete against proprietary software) are still being promoted by Microsoft; its GitHub tentacles (see GitHub's logo) further contribute to this agenda



  24. ZDNet is Totally a Microsoft Propaganda Machine

    The site ZDNet has become worse than useless; it lies, defames and launders the reputation of famous criminals (that's the business model these days)



  25. When Microsoft's Mask Falls (or When Times Are Rough)

    Microsoft loves Linux in the same sense that cats love mice (they might play with them until they get hungry)



  26. Careers in Free Software Aren't Careers in the Traditional Sense

    With historic unemployment rates and people 'stranded' inside their homes there's still demand and need for technology; these times of adaptation present an opportunity for Software Freedom



  27. Embrace, Extend, Extinguish 2020 Edition

    Embrace, Extend, Extinguish (E.E.E.) is alive and well, but the corrupt (paid by Microsoft) media isn't talking about it anymore; in fact, it actively cheers and encourages people/companies to enter the trap



  28. Links 26/5/2020: SHIFT13mi GNU/Linux Tablet, Linux Kodachi 7.0 and Some Qt Releases

    Links for the day



  29. EPO Propaganda on Steroids (or on EPO)

    What EPO management is saying and what is actually happening



  30. Breton (EU) 'Joins' Team UPC to Help His Buddy Battistelli... Again

    As expected, Breton acts as little but an EPO tool, looking to prop up supremacy of patent litigation over science and innovation


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts