05.20.10

Gemini version available ♊︎

Disable Aero in Vista 7

Posted in Microsoft, Security, Vista 7, Windows at 5:36 am by Dr. Roy Schestowitz

Aero

Summary: Resource-hungry visual effects become a security threat to Windows

YET another security problem is found in Vista 7, which begs for the question, “how on Earth does the GUI/presentation layer pose a risk to the entire operating system?”

Microsoft on Tuesday warned users of a vulnerability in 64-bit versions of Windows 7 and Windows Server 2008 R2 that could expose users to malware attacks.

[...]

Bryant said a patch would be forthcoming, but didn’t say when. In the meantime, users can prevent attacks by disabling the Windows Aero Theme. To turn it off, choose Start > Control Panel and click on Appearance and Personalization. Then click on Change the Theme. Then select one of the Basic and High Contrast Themes.

Vista 7 — like its predecessors — is not secure. Also see:

Did anyone really think that Vista 7 would improve security? Some say that Vista 7 is less secure than Vista. What’s even more perplexing:

People who paid for Vista do not feel they should pay again for “7″. Folks who sell defective cars should expect no more custom. Consumers may find “7″ acceptable but business wants to be free of the burden of that other OS. Some businesses and organizations will go with “7″ as the line of least resistance but GNU/Linux really looks good to users and administrators who have kept XP going for years. My users are asking for something fast that runs on our hardware. “7″ is not happening. We even were given some brand new machines with 3gB RAM, and, to my surprise, find they shipped with XP… That says something about this notion that customers are demanding “7″. Why would an OEM ship us XP if that were the case?

Best of Windows is not the best operating system.

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

Decor ᶃ Gemini Space

Below is a Web proxy. We recommend getting a Gemini client/browser.

Black/white/grey bullet button This post is also available in Gemini over at this address (requires a Gemini client/browser to open).

Decor ✐ Cross-references

Black/white/grey bullet button Pages that cross-reference this one, if any exist, are listed below or will be listed below over time.

Decor ▢ Respond and Discuss

Black/white/grey bullet button If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

14 Comments

  1. your_friend said,

    May 20, 2010 at 12:57 pm

    Gravatar

    Vista 7 is pretty? It’s one of the ugliest and least efficient interfaces inflicted on users. Virtual desktops are still rudimentary and the flip view is useless for anything but advertising to the ignorant. Microsoft’s ribbon interface is a confusing change for prior users that wastes screen space in the more limited direction of most LCDs, forcing people to bow their heads and scroll a lot. The looks themselves are a step backwards from previous less cluttered versions of Windows. The proportions are even worse, being more complicated and less coherent than others that were forced by technical limitations. The overall result is something that is more cluttered and bewildering than the electronic games section of a casino but twice as crass.

  2. Yuhong Bao said,

    May 20, 2010 at 8:08 pm

    Gravatar

    “Vista 7 — like its predecessors — is not secure. Also see:”
    I already rebut some of them, particularly bad is the “Vista 7 Security “Cannot be Fixed. It’s a Design Problem.”” one (see the IRC logs).

    your_friend Reply:

    A dozen cases of complete failure can be rebutted? After 25 years of the worst kinds of software insecurity you still think Windows can be used for anything but non networked games or toys? What amazing faith you have.

    Yuhong Bao Reply:

    I was rebutting the evidence used. See old IRC logs.

    Dr. Roy Schestowitz Reply:

    Microsoft will need to rebuild Windows. It still lacks security features that are found in UNIX/Linux.

    Marketing hype campaigns about “security” and UAC restrictions are not enough.

    Yuhong Bao Reply:

    It still lacks security features that are found in UNIX/Linux.
    What features? UAC is a pretty close clone of sudo, for example.

    Dr. Roy Schestowitz Reply:

    Repositories for starters. I can’t give you a complete list right now. See http://www.theregister.co.uk/2004/10/22/linux_v_windows_security/

    Yuhong Bao Reply:

    Yea, I have read this. Let me try to rebut some of them. The first one “Windows has only recently evolved from a single-user design to a multi-user model” is just plainly not true. NT has existed since 1993, even before Windows 95! On RPC, I know (I have seen Blaster, for example), but that is not easy to change even if Windows is rewritten since it is a network protocol, for God’s sake. And yes MS has been trying to make Windows more modular, see Windows Server 2008, for example, which was released after the article.

    Yuhong Bao Reply:

    Now 95 indeed ended up more popular than NT, which led to for example a lot of Win32 applications written without the NT security model in mind.

    Dr. Roy Schestowitz Reply:

    Yea, I have read this. Let me try to rebut some of them. The first one “Windows has only recently evolved from a single-user design to a multi-user model” is just plainly not true. NT has existed since 1993, even before Windows 95! On RPC, I know (I have seen Blaster, for example), but that is not easy to change even if Windows is rewritten since it is a network protocol, for God’s sake. And yes MS has been trying to make Windows more modular, see Windows Server 2008, for example, which was released after the article.

    Please provide me with proof that it’s more modular. Microsoft patented a modular O/S, but it does not mean this was properly implemented (or that Microsoft invented it).

    Now 95 indeed ended up more popular than NT, which led to for example a lot of Win32 applications written without the NT security model in mind.

    The article is not from early NT days. It’s just several years old. I think you are nitpicking.

    Yuhong Bao Reply:

    Please provide me with proof that it’s more modular. Microsoft patented a modular O/S, but it does not mean this was properly implemented (or that Microsoft invented it).
    Windows Server 2008, with it’s Server Core support, should be proof that MS is at least trying to make it more modular.

    Dr. Roy Schestowitz Reply:

    Please provide me with proof that it’s more modular. Microsoft patented a modular O/S, but it does not mean this was properly implemented (or that Microsoft invented it).

    Windows Server 2008, with it’s Server Core support, should be proof that MS is at least trying to make it more modular.

    Trying. It’s still not there. For a truly modular architecture see how Linux/GNU/X can be decoupled.

  3. Yuhong Bao said,

    May 21, 2010 at 3:51 pm

    Gravatar

    “The article is not from early NT days. It’s just several years old. ”
    Which only makes the claim that “Windows has only recently evolved from a single-user design to a multi-user model” even less true. NT has existed for more than a decade by then.

    Dr. Roy Schestowitz Reply:

    That’s just a distraction really. It’s not the ‘meat’ of the article.

DecorWhat Else is New


  1. IRC Proceedings: Friday, June 09, 2023

    IRC logs for Friday, June 09, 2023



  2. Links 10/06/2023: libei 1.0.0 and Qt Creator 11 Beta

    Links for the day



  3. Jim Zemlin Boasting in 2022: Linux Foundation Has Revenue of Over 200 Million Dollars; IRS in 2022: Linux Foundation Has Revenue of 139 Million Dollars

    As noted here months ago, the Linux Foundation is run by a lying, manipulative charlatan who merely milks the brand “Linux” to enrich himself; where is that anomaly coming from?



  4. 'Linux' Foundation: Spendings on Salaries Increased More Than 20% in One Year

    As per the document just published after it had been submitted 7 months ago, salary-related expenditures rose from 49,386,990 to 59,791,694 in one year



  5. Links 09/06/2023: JDBC FDW 0.3.1 and Godot 4.1 Beta

    Links for the day



  6. Gemini Links 09/06/2023: Thoughts on Flatpak and Apple Cultists

    Links for the day



  7. Trying to 'Finish the Job' of Bully de Blanc and Deb Nicholson by Rewriting History (and Even Terms) for Microsoft

    Heather J. Meeker is trying to rewrite history and now we can see who her financial masters and hosts are (lots of Microsoft); The media portrayed her as some kind of historian for Free software a few months ago (as funding had been secured), but she already outsources everything to proprietary software controlled by Microsoft. This will be corporate revisionism; moreover, there’s employment history with Microsoft. As an associate put it: “The employment history with Microsoft is a dead give away that she will only spew lies and disinformation” (using books and such; the revisionism is well funded); the latest blog from the OSI is also sponsored by Microsoft (both the blog post and the person who wrote it)



  8. Links 09/06/2023: Tor Browser 12.0.7 and Many Linux Devices

    Links for the day



  9. Linux Foundation Demotes Mr. Linux, Linus Torvalds, to Third (in Salaries), Only Uses Him for the Name

    The Linux [sic] Foundation‘s tax filings (divulged by the Nonprofit Explorer) show that it now pays “CHRIS ANISZCZYK” and “JAMES ZEMLIN” more than it pays “LINUS TORVALDS”, sans bonuses. Torvalds fell to third place already. Mr. Zemlin pays himself over $1.2 million a year. He doesn’t even use Linux. He lacks credentials and accomplishments (except for selling out to companies like Microsoft), but he keeps pandering to power and money (Bill Gates). It should be noted that the Torvalds bonus was added only after backlash had erupted.



  10. HMRC is Just Taking Taxpayers' Money and Not Enforcing the Law (or Selectively Enforcing It for the Political Masters)

    What we've been demonstrating or highlighting so far this year is a defunct system of accountability, wherein the government officials and their associates are essentially above the law; can they endure the negative press that entails?



  11. GNU/Linux Decade in India: From 1.5% to 13.5%

    The world's largest population is quick to move away from Windows; not many adopt Apple (Indians don't care for overpriced junk), so GNU/Linux is growing fast



  12. IRC Proceedings: Thursday, June 08, 2023

    IRC logs for Thursday, June 08, 2023



  13. Links 09/06/2023: Microsoft's 'Online' ("Clown"/OneDrive) Storage Goes Down Again, Files Cannot be Reached

    Links for the day



  14. What Will Happen After All Major News Sites Die Isn't Pretty

    With webspam, chaff, sponsored puff pieces and worse things being presented as "the news" we're running out of actual purpose for the World Wide Web



  15. HMRC 3 Weeks Later: No Action, Same as 'Action Fraud' (Your Tax Money 'at Work')

    When people need police enforcement against a crime it turns out that police is “MIA” (missing in action); it might matter that Sirius worked with the British government, so there’s a reduced incentive to affirm crimes were committed and then arrest the perpetrators



  16. Links 08/06/2023: Istio 1.18 and FreeIPMI 1.6.11

    Links for the day



  17. Gemini Links 08/06/2023: Sourcehut, Gemini Identity, and BBS Comments on Cosmos

    Links for the day



  18. IRC Proceedings: Wednesday, June 07, 2023

    IRC logs for Wednesday, June 07, 2023



  19. The Need to Evolve on the Internet

    Tux Machines is one year away from its twentieth birthday and its increased focus on protocols aside from HTTP/S is paying off; Tux Machines also weaned itself off all social control media, including Mastodon and Diaspora (they're not the future, they're the past)



  20. EPO Management is Still Bullying the Staff (While Breaking the Law and Violating the European Patent Convention)

    Overloaded or overworked EPO workers are complaining about further deterioration at the workplace and their representatives say "this management style may well contribute to feelings of disengagement, depression, or even burn-out"



  21. His Majesty’s Revenue and Customs (HMRC) Not Responding After 20 Days (Well-Founded Report of Tax Fraud) and British Police Pretending Not to Exist

    The crimes of Sirius ‘Open Source’ have helped unearth a profound problem in the British law enforcement authorities; What good is a monopolistic taxman (called after the British Monarchy even in 2023) that cannot assess its own tax abuses? Or abuses connected to it via a contractor? Meanwhile, as per what I was told, the police is not responding to my MP and that’s ANOTHER scandal (police not only refusing to act against crimes, committed against many people, but moreover not responding to elected politicians)



  22. Links 08/06/2023: Cinnamon 5.8 and Leap 15.5 Release Mature

    Links for the day



  23. Gemini Links 08/06/2023: Emacs and Thoughts on Bubble

    Links for the day



  24. Links 07/06/2023: Reddit Layoffs and OpenGL 3.1 in Asahi Linux

    Links for the day



  25. Gemini Links 07/06/2023: Jukka Charting Geminispace

    Links for the day



  26. IRC Proceedings: Tuesday, June 06, 2023

    IRC logs for Tuesday, June 06, 2023



  27. NOW LIVE: Working for the Public — Universities, Software and Freedom - a Talk by Richard Stallman at Università di Pisa (Italy)

    As noted a few hours ago, Richard Stallman is delivering a talk at Università di Pisa this morning



  28. Richard Stallman's Talk is in Two Hours and There's a BigBlueButton Livestream

    Dr. Stallman is in Italy to give talks at universities this week; he will soon give a live talk, accessible in his site or directly at the source



  29. Links 06/06/2023: Angie 1.2.0, New EasyOS and EndeavourOS Released

    Links for the day



  30. Gemini Links 06/06/2023: OpenKuBSD, GrapheneOS, and More

    Links for the day


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts