EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

12.11.09

Trend Micro: Vista 7 Less Secure Than Vista

Posted in Microsoft, Security, Vista, Vista 7, Windows at 4:47 am by Dr. Roy Schestowitz

UAC

Summary: Trend Micro’s assessment of Vista 7 concurs with previous analyses which say that Vista 7 is a step back when it comes to security

ON several occasions in the not-so-distant past, experts warned that Vista 7 is even less secure than Windows Vista. To give previous examples of security issues in Vista 7:

  1. Cybercrime Rises and Vista 7 is Already Open to Hijackers
  2. Vista 7: Broken Apart Before Arrival
  3. Department of Homeland Security ‘Poisoned’ by Microsoft; Vista 7 is Open to Hijackers Again
  4. Vista 7 Security “Cannot be Fixed. It’s a Design Problem.”
  5. Why Vista 7 Could be the Least Secure Operating System Ever
  6. Journalists Suggest Banning Windows, Maybe Suing Microsoft Over DDoS Attacks
  7. Vista 7 Vulnerable to Latest “Critical” Flaws
  8. Vista 7 Seemingly Affected by Several More “Critical” Flaws This Month
  9. Reason #1 to Avoid Vista 7: Insecurity
  10. Vista 7 Left Hijackable Again (Almost a Monthly Recurrence)

Now comes yet another firm, Trend Micro, claiming that Vista 7 is less secure than Windows Vista:

Windows 7 is less secure out-of-the box than Vista, despite Redmond’s protestations to the contrary, a top security firm has claimed.

Trend Micro said that the default configurations of Windows 7 are less secure than Vista. Raimund Genes, CTO of Trend Micro, said that Windows 7 had sacrificed security for useability – at least for default configurations.

We shall continue to keep track of such important claims.

In other (in)security news yesterday:

i. Scareware slingers flaunt fake MS endorsement

Surfers visiting the URL on the Windows Support site referenced in the scareware from a clean PC will get a 404 ‘page not found’ message. Hacked PC victims will see an apparent endorsement.

ii. Potent malware link infects almost 300,000 webpages

A security researcher has identified a new attack that has infected almost 300,000 webpages with links that direct visitors to a potent cocktail of malicious exploits.

iii. How many people fall victim to phishing attacks?

According to a recently released report, based on a sample of 3 million users collected over a period of 3 months, approximately 45% of the time, users submitted their login information to the phishing site they visited.

The important point to remember is that Vista 7 changes nothing as far as security is concerned. Microsoft and/or its apologists love to defend Windows using the talking point that security issues are the fault of people who do not migrate to the latest version of Windows. It’s a sales pitch.

Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

12 Comments

  1. Yuhong Bao said,

    December 12, 2009 at 11:32 pm

    Gravatar

    “To give previous examples of security issues in Vista 7:“
    I already explained or debunked some of the previous ones. On this one, it is about default configurations of Vista and 7, and I am sure that most of the defaults can be changed.

  2. Yuhong Bao said,

    December 12, 2009 at 11:34 pm

    Gravatar

    On Linux default configurations, one of the most famous disasters was to allow any local users to install packages by default:
    http://lwn.net/Articles/362771/

    your_friend Reply:

    That article in LWN is surprisingly rude and ill informed. It is rude because it paints the changes as ignorant and arrogant if not malicious. It is ill informed because the result is not really a big deal. I would not configure my system that way but I would not be so rude to a software maintainer about it. We’re talking about free software here, love it or change it. Outrage is only proper in the non free software world, where the user has traded their rights for promises of care. Why do you equate the obligations in two models which have such clear differences?

    More fundamentally, why do you try to equate Microsoft and Unix insecurity? Both systems have 30 year security histories and one is obviously better than the other which requires a useless, often abusive, monthly patch. Microsoft’s insecurity is a blight on the internet. Vista and Windows 7 are just as bad as any previous version of Windows. Claims of better security have been made of every previous version, usually with detailed technical descriptions that ignore fundamental flaws that allow attackers remote, root level access. With so long a history of failure, it is unreasonable to expect a change.

    Malicious claims of flaws in competing software is part of Microsoft’s criminal behavior. Their agents religiously defend Windows and make vague threats of doom for others. They have said the same things about Netscape, Mac OS, Unix and GNU/Linux. This has gone on for so long, it is surprising to see that Microsoft credibility lives on.

    Yuhong Bao Reply:

    “Both systems have 30 year security histories and one is obviously better than the other which requires a useless, often abusive, monthly patch.”
    It is not that simple.
    “Malicious claims of flaws in competing software is part of Microsoft’s criminal behavior. ”
    One of the most recent is when MS tried to FUD Chrome Frame.
    “usually with detailed technical descriptions that ignore fundamental flaws that allow attackers remote, root level access.”
    Really, is NT really that fundamentally flawed? I don’t think so, look at ReactOS

    Roy Schestowitz Reply:

    “Malicious claims of flaws in competing software is part of Microsoft’s criminal behavior. ”
    One of the most recent is when MS tried to FUD Chrome Frame.

    Or Google search.

    your_friend Reply:

    Yes, NT was fundamentally flawed. The security record speaks for itself. I know people who had NT hosed over like any other version of Windows. It’s all the same.

    Yuhong Bao Reply:

    http://www.reactos.org/en/about.html

    Roy Schestowitz Reply:

    I’ve taken a look. You have to remember their bias though; they need to justify their own choices.

    your_friend Reply:

    NT as is flawed as it and it’s descendents are worse. That is the well established record. A free software implementation of NT will be better than the thing that Microsoft’s team of poached VMS engineers could throw together but it won’t be NT if it fixes NT’s fundamental and implementation flaws. I consider access control lists poor design, but what do I know? So here are words of wisdom from people who do know. Michael Feathers,

    a willingness to live with a little less to avoid the bigger mess and a willingness to see elegance in the real rather than the vision

    and the famous words of someone who knows all about legacy code, Michael Feathers

    Those who don’t understand UNIX are doomed to reinvent it, poorly.

    Reactos is a nice effort but it’s hard to take seriously anyone who’d say the crazy things on that about page. It would be nice to have a free implementation of Windows to run other user hostile legacy programs. The about page, however, reads like something from Microsoft’s “Get the facts” pages. Someone who knows better should clean that embarrassing mess up.

    your_friend Reply:

    NT is flawed as it is. That’s how the last one should have started. I’m not sure what happened to make it so incoherent looking.

    Roy Schestowitz Reply:

    Wasn’t this reversed?

    Yuhong Bao Reply:

    Yes, it was.

What Else is New


  1. 2019 Microsoft Glossary

    How Microsoft internally interprets words that it is saying to the public and to the press



  2. 2019 Surveillance Glossary

    Distortion of technical and nontechnical terms in this day and age of '1984'



  3. Openwashing Report: It's Getting Worse, Fast. Everything is Apparently 'Open' Now Even Though It's Actually Proprietary.

    The latest examples (this past week's) of openwashing in the media, ranging from 5G to surveillance



  4. GitHub is a Dagger Inside Free/Open Source Software (FOSS); This is Why Microsoft Bought It

    A year later it seems pretty evident that Microsoft doesn’t like FOSS but is merely trying to control it, e.g. by buying millions of FOSS projects/repositories at the platform level (the above is what the Linux Foundation‘s Jim Zemlin said to Microsoft at their event while antitrust regulators were still assessing the proposed takeover)



  5. Microsoft Grows Within and Eats You From the Inside

    Microsoft entryism and other subversive tactics continue to threaten and sometimes successfully undermine the competition; Microsoft is nowadays doing that to core projects in the Free/Open Source software world



  6. Links 18/8/2019: New KNOPPIX and Emmabuntus Released

    Links for the day



  7. Links 17/8/2019: Unigine 2.9 and Git 2.23

    Links for the day



  8. Computer-Generated Patent Applications Show That Patents and Innovations Are Very Different Things

    The 'cheapening' of the concept of 'inventor' (or 'invention') undermines the whole foundation/basis of the patent system and deep inside patent law firms know it



  9. Concerns About IBM's Commitment to OpenSource.com After the Fall of Linux.com and Linux Journal

    The Web site OpenSource.com is over two decades old; in its current form it's about a decade old and it contains plenty of good articles, but will IBM think so too and, if so, will investment in the site carry on?



  10. Electronic Frontier Foundation Makes a Mistake by Giving Award to Microsoft Surveillance Person

    At age 30 (almost) the Electronic Frontier Foundation still campaigns for privacy; so why does it grant awards to enemies of privacy?



  11. Caturdays and Sundays at Techrights Will Get Busier

    Our plan to spend the weekends writing more articles about Software Freedom; it seems like a high-priority issue



  12. Why Techrights Doesn't Do Social Control Media

    Being managed and censored by platform owners (sometimes their shareholders) isn’t an alluring proposition when a site challenges conformist norms and the status quo; Techrights belongs in a platform of its own



  13. Patent Prosecution Highways and Examination Highways Are Dooming the EPO

    Speed is not a measure of quality; but today's EPO is just trying to get as much money as possible, as fast as possible (before the whole thing implodes)



  14. Software Patents Won't Come Back Just Because They're (Re)Framed/Branded as "HEY HI" (AI)

    The pattern we've been observing in recent years is, patent applicants and law firms simply rewrite applications to make these seem patent-eligible on the surface (owing to deliberate deception) and patent offices facilitate these loopholes in order to fake 'growth'



  15. IP Kat Pays the Price for Being a Megaphone of Team UPC

    The typical or the usual suspects speak out about the so-called 'prospects' (with delusions of inevitability) of the Unified Patent Court Agreement, neglecting to account for their own longterm credibility



  16. Links 17/8/2019: Wine 4.14 is Out, Debian Celebrates 26 years

    Links for the day



  17. Nothing Says 'New' Microsoft Like Microsoft Component Firmware Update (More Hardware Lock-in)

    Vicious old Microsoft is still trying to make life very hard for GNU/Linux, especially in the OEM channel/s, but we're somehow supposed to think that "Microsoft loves Linux"



  18. Bill Gates and His Special Relationship With Jeffrey Epstein Still Stirring Speculations

    Love of the "children" has long been a controversial subject for Microsoft; can Bill Gates and his connections to Jeffrey Epstein unearth some unsavoury secrets?



  19. Links 16/8/2019: Kdevops and QEMU 4.1

    Links for the day



  20. The EPO's War on the Convention on the Grant of European Patents 2000 (EPC 2000), Not Just Brexit, Kills the Unitary Patent (UP/UPC) and Dooms Justice

    Team UPC continues to ignore the utter failures that have led to lawlessness at the EPO, attributing the demise of the Unified Patent Court (UPC) to Brexit alone and pretending that it's not even a problem



  21. Links 15/8/2019: GNOME's Birthday, LLVM 9.0 RC2

    Links for the day



  22. 'Foundation' Hype Spreads in China

    Nonprofits seem to have become more of a business loophole than a charitable endeavour; the problem is, this erodes confidence in legitimate Free software and good causes



  23. Links Are Not Endorsements

    If the only alternative is to say nothing and link to nothing, then we have a problem; a lot of people still assume that because someone links to something it therefore implies agreement and consent



  24. The Myth of 'Professionalism'

    Perception of professionalism, a vehicle or a motivation for making Linux more 'corporate-friendly' (i.e. owned by corporations), is a growing threat to Software Freedom inside Linux, as well as freedom of speech and many other things



  25. Links 14/8/2019: Best Chromebooks, EPEL 8.0, LibreOffice 6.2.6

    Links for the day



  26. Being in Favour of Free/Libre Open Source Software Means Rejecting Software Patents

    Those who believe in Software Freedom cannot at the same time believe that software patents are desirable; we've sadly come to a point where many companies that dominate so-called 'Open Source' groups actively lobby for such patents, in effect betraying the community they claim to be a part of



  27. Links 14/8/2019: Apache Evaluated, HardenedBSD Has New Release

    Links for the day



  28. Planet Python is Being Overrun by Microsoft, Just Like PyCon and Python in General

    Microsoft is perturbing the Free/Open Source software (FOSS) world from the inside, promoting Microsoft's most malicious proprietary software from within that world while taking positions of power in powerful FOSS projects



  29. Coming Soon: The Innards of the Eric Lundgren Case That Microsoft is Desperate to Hide or Spin (by Defaming Lundgren)

    Microsoft is rather stressed about Eric Lundgren coming out of prison and telling how Microsoft put him there; right now Microsoft is mostly name-calling while seeking to control public dialogues



  30. Wrong Person in Charge of the Linux Foundation (and in Charge of Linus Torvalds)

    There are several glaring issues when it comes to the leadership of Linux's steward; for one thing, it lacks actual background in... Linux


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts