EditorsAbout the SiteComes vs. MicrosoftUsing This Web SiteSite ArchivesCredibility IndexOOXMLOpenDocumentPatentsNovellNews DigestSite NewsRSS

03.08.10

Apache Shows Why GNU/Linux is Safer Than Microsoft Windows; Microsoft Makes Batteries Dangerous

Posted in Free/Libre Software, GNU/Linux, Microsoft, Security, Windows at 12:41 pm by Dr. Roy Schestowitz

Battery charger

Summary: Windows shows that it not only brings security problems to Apache but also to battery chargers

THE thing about Windows is, the underlying operating system is less secure than UNIX and Linux. Here is nice new proof of this, straight from the news. Our reader renamed it (the headline) “Windows bug prompts Apache update advice”

“The vulnerability means that you can take complete control of the web server remotely with system privileges — which is the highest privilege on Windows,” Edelstein told ZDNet.com.au. “An attacker could gain access to, modify and take away data.”

Edelstein advised users running Apache on Windows platforms to upgrade immediately as users have no way of knowing if their web servers have been compromised. The company’s security advisory can be accessed here.

[...]

“A proof of concept remote exploit has been written by Sense of Security, and it is feasible that others could write a similar exploit to completely compromise a Windows system,” said Brett Gervasoni.

As most Apache users run it on UNIX and Linux, the above is probably nothing to panic or worry about.

Charged With Malware

“Microsoft, the company that made battery chargers dangerous,” called it the reader who sent this next item from the news:

The United States Computer Emergency Response Team (US-CERT) has warned that the software included in the Energizer DUO USB battery charger contains a backdoor that allows unauthorized remote system access.

In an advisory, the US-CERT warned that he installer for the Energizer DUO software places the file UsbCharger.dll in the application’s directory and Arucer.dll in the Windows system32 directory.

When the Energizer UsbCharger software executes, it utilizes the UsbCharger.dll component for providing USB communication capabilities. UsbCharger.dll executes Arucer.dll via the Windows rundll32.exe mechanism, and it also configures Arucer.dll to execute automatically when Windows starts by creating an entry in the HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run registry key.

“The danger of Open Source software is that you don’t know if it contains malware,” jokingly said our reader.

Share this post: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Digg
  • del.icio.us
  • Reddit
  • co.mments
  • DZone
  • email
  • Google Bookmarks
  • LinkedIn
  • NewsVine
  • Print
  • Technorati
  • TwitThis
  • Facebook

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

3 Comments

  1. your_friend said,

    March 8, 2010 at 9:55 pm

    Gravatar

    Ha ha, it went undetected for three years. The Windows version of that Energizer Bunny has been pulled from the market.

    Regardless of when it was created, its discovery prompted Energizer to announce March 5 that it was discontinuing the sale of the product and removing the site from which the software could be downloaded. In addition, the company is urging consumers who downloaded the Windows version of the software to uninstall it.

    It’s amazing how popular the wipe and reload becomes when Microsoft needs to sell a new version of Windows. Thanks for all the nice links.

  2. Needs Sunlight said,

    March 9, 2010 at 5:53 am

    Gravatar

    @your_friend : it did not go undetected for three years, Microsoft did not publicly acknowledge it for three years, or more. There is a lot of difference there.

    Wipe and reload becomes popular when Microsoft needs to sell new versions of Windows or when third party packages, of any kind, become too popular. Wipe and reload ensures that the 3rd party packages are knocked down at least a couple points in marketshare. It is to Microsoft’s advantage that they are so many decades behind Linux, OS X or even Solaris in regards to package management.

  3. uberVU - social comments said,

    March 11, 2010 at 5:51 pm

    Social comments and analytics for this post…

    This post was mentioned on Identica by schestowitz: #Apache Shows Why #GNU #Linux is Safer Than #Microsoft #Windows http://boycottnovell.com/2010/03/08/battery-chargers-and-malware/

What Else is New


  1. US Supreme Court (SCOTUS) Keeps Introducing Changes to Patent Law and Patent Policy Under the Trump Administration Still Looks OK

    Judging by what we are seeing so far this year, the US patent system won't be going back into the sordid mess it once was, thanks in part to the Justices of the US Supreme Court and the America Invents Act, signed into law over half a decade ago



  2. Leaked: Team Battistelli, Exploiting a Controversial Decision From the Netherlands, is Trying to Squash SUEPO

    The latest leak suggests that Battistelli not only celebrates immunity from the law but also uses that to take further steps against the Staff Union of the EPO (SUEPO)



  3. Dr. Ingve Björn Stjerna: UPC's “Entry Into Force is Not at all Secured,” Contrary to What Team UPC Says

    The ludicrous notion that the UPC is inevitable and just a matter of time is challenged by longtime UPC observers, including Dr. Ingve Björn Stjerna, who wrote an entire book on the subject



  4. Media Blasts EPO Over Immunity Amid Suicides, Battistelli's Behaviour Compared to Dominique Strauss-Kahn's

    Backlash in the Netherlands is growing again, primarily as a result of media reports about the EPO's abuses against basic rights and the government's reluctance to put an end to these abuses



  5. Hilarious: Battistelli Goes to Former French Colony With No Patents to 'Buy' the EPO a Perception of Legitimacy

    Having toured various banana republics in pursuit of easy-to-sign deals, Battistelli now goes to Cambodia again, in order to make it seem as though the EPO is conquering Asia



  6. Patent Trolls Like Finjan Holdings and Thomas Edison; the Latest Loss for Software Patents in the US and Their Move to China

    A look at the very latest patent news, which suggests further improvements in the US, pushback from the patent microcosm, and an outsourcing of a terrible system to Chinese territories, where the overpatenting plague grows rapidly



  7. Still Waiting for Official Confirmation That Michelle Lee Will Head the Patent Office Under Donald Trump's Administration

    As of today, there is still no official word on whether or not Lee continues her tenure, which saw the demise of patents on software and along with that the demise of patent trolls and frivolous litigation



  8. Links 23/1/2017: Wine Releases, Microsoft Layoffs

    Links for the day



  9. 'Reform' at the EPO Means Destroying the Staff Union, Crushing Patent Examiners, and Imposing on Europe a System It Does Not Want (UPC)

    The chaotic transition at the EPO -- a transition from something which has been workable to something intolerable -- and the role of the Unitary Patent (UPC), which lurks in the shadows and threatens to harm the whole of Europe



  10. Shakeup Against Patent Parasites in the US and More Rumours/Speculations About USPTO Director Michelle Lee After Trump's Inauguration

    The US patent system is becoming ever more hostile towards patent trolls, owing in part to reforms introduced under Michelle Lee's tenure, but people are still not certain that she will maintain her job and continue to fix the system



  11. EPO Abuses Now Make the Netherlands Look Like a Facilitator of Human/Labour Rights Abuses

    Rather than crack down on human rights abuses, the Dutch government now sends out the signal that it's an island for those wish to violate human rights whilst enjoying immunity (EPO)



  12. Links 20/1/2017: Docker 1.13, Linux 4.4.44 LTS

    Links for the day



  13. “Federal Circuit Had Affirmed on Every Issue in 77.4% of the Patent Trial and Appeal Board Appeals it Had Seen” in 2016

    The Federal Circuit (CAFC) and Patent Trial and Appeal Board (PTAB) continue to squash a lot of patents on software, in contrast to that fake news from patent maximalists



  14. Kudelski Group Not Only Acts Like a Patent Troll But Also Run by Intellectual Ventures Person; Mobile Market in Dire State of Patent Armageddon

    The patent thicket which pervades everything that is used by billions of people, mobile technology in particular, can be traced back to a lot of non-practicing parasites (or patent trolls)



  15. Watchtroll and His Swamp Still Blame Google (Where Michelle Lee Came From) for Improving and Gradually Fixing Aspects of the US Patent System

    Shooting the messengers (even wrongly associating yours truly with Google) in an effort to undermine patent reform when it is so desperately needed due to serious injustices



  16. In an Age of Necessary Patent Reform and Permanent Uncertainty for Software Patents the Patent Microcosm Looks for Workarounds and Spin

    Commentary on the status quo in the Michelle Lee era and some examples of bias from the patent microcosm, as well as news regarding the NFL getting sued by the Kudelski Group



  17. Michelle Lee, USPTO Director, Should Recognise That the Patent Microcosm is Her Enemy Which Hates Her

    The latest outburst from the patent microcosm, which has a temper issue and notorious disdain for judges it does not agree with, is more of what we have come to expect



  18. Battistelli is an Autocrat Above the Law and It's OK, Holland's High Council Says

    Battistelli's autocratic tendencies will not be challenged by Dutch authorities, in spite of sheer condemnation from many groups all across Europe and the entire world



  19. Beware Fake News About the Unitary Patent (UPC)

    The UPC is dead, deadlocked, stuck, in a limbo and so on; those who claim otherwise are merely lobbying (in disguise of "analysis" or "news")



  20. Shame on MapR for Pursuing Software Patents While Pretending to Stand for Free/Open Source Software

    The patents gold rush sees another company joining the 'fun', albeit this company should campaign hard against software patents rather than pursue any



  21. Doomsday Scenario in the Back Mirror as Michelle Lee Keeps Her Job (and Much-Needed Patent Reform) at the USPTO

    The future of patent reform, i.e. tackling overpatenting and patent trolls, looks somewhat more promising with today's confirmation of Lee's 'extended tenure' at the Office



  22. Links 19/1/2017: PulseAudio 10.0, Linux 4.9 Longterm Kernel

    Links for the day



  23. Corporate (Wall Street) Media Agrees That Brexit Dooms the Unitary Patent (UPC)

    The nonstop lies or the fake news about the UPC starting "real soon now" don't quite pass a reality check or a basic assessment based on fundamental concepts, such as the UPC's facilitation of subordination (to Europe) in the United Kingdom



  24. Farce of an 'Independence' for the Boards of Appeal as Another Ally of Benoît Battistelli Enters as Parasite Inside the 'Overseer'/Host

    The latest cluster of lies from the President of the European Patent Office (EPO) and direct refutation of false claims of independence for the Boards of Appeal, where the former Vice-Presidents can flock, just like the Mini Minion (Minnoye) of Battistelli



  25. Links 18/1/2017: Red Hat's OpenShift 3.4, Mozilla's New Logo/Branding

    Links for the day



  26. Union-Busting Action by Team Battistelli Takes Heavy Toll, Techrights Will Continue to Expose EPO Injustices to the World

    The Staff Union of the European Patent Office, SUEPO, which faced unprecedented and probably illegal (based on local laws) attacks, is being weakened by the worst President ever, whose own management team seems to be collapsing along with the institution he is destroying in just a few years



  27. A Lot More Fake News About the UPC, Trying to Convince People That the UK is Ratifying (It's Not, It Cannot)

    Response to some of the latest misleading (self-serving) whispers about the fate of the Unified Patent Court (UPC), which is in a deadlock due to Brexit



  28. Rumours Suggest That EPO Management is Aware of Decline in Patent Quality and is Thus Actively Lying About it to the Media/Public

    Whenever Battistelli brags about patent quality he may be consciously and deliberately lying through his teeth if the latest rumours are correct



  29. Links 17/1/2017: GIMP Plans, New Raspberry Pi Product

    Links for the day



  30. Resumption of EPO Propaganda ('Meet the President') Officially Starts Tomorrow

    Yet another one of these foolish 'Meet the President' stunts, scheduled to take place tomorrow morning


CoPilotCo

RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

CoPilotCo

Recent Posts