06.15.13

Confirmed: Microsoft Tells the NSA About Back Doors in Windows

Posted in Microsoft at 7:22 am by Dr. Roy Schestowitz

Nobody needs hardware-level back doors when Windows (or other proprietary software) is installed

Hardware

Summary: Official confirmation that the NSA is being notified about ways of hijacking Windows before Microsoft releases fixes

Half a decade ago I put together some links about backdoors in Windows. I had accumulated those links for years. Now that we know how corrupt and aggressive the NSA can be (common knowledge after the latest leak), with cracking attacks on China, espionage, and unlimited mass surveillance in a fascistic manner (with corporations fully complicit), it all seems far less improbable and hardly far-fetched.

According to a new report from the corporate press (as corporate as it can get, being Bloomberg), Microsoft tells NSA staff about universal unpatched holes before they are being addressed:

Microsoft Corp. (MSFT), the world’s largest software company, provides intelligence agencies with information about bugs in its popular software before it publicly releases a fix, according to two people familiar with the process. That information can be used to protect government computers and to access the computers of terrorists or military foes.

Redmond, Washington-based Microsoft (MSFT) and other software or Internet security companies have been aware that this type of early alert allowed the U.S. to exploit vulnerabilities in software sold to foreign governments, according to two U.S. officials. Microsoft doesn’t ask and can’t be told how the government uses such tip-offs, said the officials, who asked not to be identified because the matter is confidential.

Frank Shaw, a spokesman for Microsoft, said those releases occur in cooperation with multiple agencies and are designed to be give government “an early start” on risk assessment and mitigation.

Glyn Moody asked, “why would anyone ever trust Microsoft again…?”

Frank Shaw is not a technical man. His job is to lie, e.g. about sales of Vista 8 (quite famously and most recently). He came from Waggener Edstrom, a lying and AstroTurfing company. The above should be read as follows: when new holes exist which permit remote hijacking the unaccountable, cracking-happy NSA is being notified. What can possibly go wrong now that we have proof that the NSA is cracking PCs abroad with impunity? Germany, are you paying attention?

Here is more about this news:

Some of the back and forth is innocuous, such as Microsoft revealing ahead of time the nature of its exposed bugs (ostensibly providing the government with a back door into any system using a Microsoft OS, but since it’s don’t ask, dont’ tell, nobody really knows). However the bulk of the interaction is steeped in secrecy: “Most of the arrangements are so sensitive that only a handful of people in a company know of them, and they are sometimes brokered directly between chief executive officers and the heads of the U.S.’s major spy agencies, the people familiar with those programs said.”

In IRC, Sosumi highlighted this article and said, “tell me something that isn’t known already, like PRISM is just an evolution of a previous snooping program and that the NSA has built an AI, even if rudimentary, in order to assist them sort the information… also I wonder if Keith Alexander will be at this year’s DEFCOM conference” (part of the PR and recruitment exercise).

Here is an interesting new post which relates to what we know about NSA’s cracking of people’s PCs (the lesser-advertised role of the NSA):

Skype is said to have several back doors. Our latest post about it got updated with new information. Skype can be used as a back door on any platform (known holes left unaddressed), GNU/Linux included. Microsoft controls it and it has a monopoly on the source code.

Watch the MSN corporate press (Microsoft’s pseudo ‘news’ site) promoting both Skype and Facebook:

Thanks to a simple inquiry on Facebook, it’s now a day to celebrate with a father who didn’t know he existed for nearly three decades.

“Whitewashing of Skype and Facebook” is what iophk called this. “Notice the lack of I-told-you-so articles about FB snooping or any coverage of the snooping at all.”

Skype is a Microsoft-controlled product (acquired and quickly altered to reduce decentralisation, user control, and privacy). Advertising it with the partly Microsoft-owned Facebook is too shallow a case of bogus ‘journalism’.

There is also something about spying capabilities of the Xbox One, summarised by the headline “US Navy serviceman calls Xbox One’s 24-hour online check “a sin committed against all service members”” (people seem to be getting the importance of privacy, over time).

A few weeks ago we spoke about expanding the scope of coverage in Techrights to privacy-related matters. We’ll soon conduct an interview with Richard Stallman (to be published later this month) as privacy becomes a central issue relating to software freedom. We should start using the privacy card to advance the Free/libre software agenda.

National Security Agency

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

Pages that cross-reference this one

What Else is New


  1. Internal Error: Unified Patent Court and Unitary Patent Incompatible With the Constitution and Basic Laws

    The FFII has issued a statement for Members of the Bundestag, Members of the European Parliament, Members of the Council, German Presidency of the EU, Chancellor Merkel, Commissioner Von Der Leyen, Commissioner Reynders, and Battistelli's buddy Breton



  2. The EPO is Using Hype Wave and Buzzword to Promote Illegal Software Patents in a So-Called “Digital Conference”

    The "HEY HI" or "AI" hype is misused by the Office; not just in person but also in webstreams, which basically serve as a vehicle for illegal agenda



  3. Dutch Delegation and German Delegation at the Administrative Council of the EPO Upset at the Office for Secrecy, Working Behind the Scenes to Crush Productive Staff

    Less than halfway through his term at the Office, Battistelli's buddy already faces growing criticism and, according to the Central Staff Committee, he "was emotionally affected by the intervention such that he was not able to effectively reply to the questions of the delegates."



  4. Links 23/11/2020: GNU Guix 1.2.0, Evaluating Precursor’s Hardware Security, Kdenlive 20.08.3, Kodi 19.x Beta, Vulkan 1.2.162

    Links for the day



  5. Links 23/11/2020: Linux 5.10-rc5, GIMP Turns 25, 4MLinux 34.2, Escuelas Linux 6.11, MPV Player 0.33

    Links for the day



  6. How to Put on Airs of Professionalism Like a Boss

    "Boardroom suits are not meant to be flashy, but to conform. Simple lines and smart ties -- the opposite of what Richard Stallman would wear, show that you are either a well-machined cog or a serious adversary."



  7. IRC Proceedings: Sunday, November 22, 2020

    IRC logs for Sunday, November 22, 2020



  8. Legal Action at the European Patent Office (EPO) Leveraged Against Management... for Robbing EPO Staff and Robbing Europe, by Extension

    The EPO is being looted for its value; the staff is rightly concerned and there’s legal action on the way, filed reluctantly as there’s clearly no other option (a last resort/necessary recourse)



  9. Cory Doctorow at Privacy Week 2020 on DRM, Freedom/Software Freedom, Regulation, Etc.

    “We Used To Have Cake, Now We’ve Barely Got Icing” by Cory Doctorow.



  10. Links 22/11/2020: KaOS 2020.11, Calindori 1.3, KStars 3.5.0

    Links for the day



  11. New Position Paper on the Unified Patent Court (UPC) Says It's “Not the Best Solution for Europe” -- Clearly an Understatement

    UPC proponents (profiteers) aren't enjoying support anymore; not only has progress stalled (come to a complete stop) but the whole debate about the UPC (or anything conceptually like it) turned toxic and negative because facts come out, overriding lobbyists of litigation giants



  12. Mortality Rates Increase at the EPO and Christmases (or Holidays) During Corona Mean Fewer Days Off

    There's still no sign (other than hand-waving and empty gestures/smiles) that the EPO's management wishes to right the wrongs and undo the damage done over the past decade or so; in some ways, today's management is worse than ever before (grossly incompetent and eager to break the law at every turn)



  13. Newly Abnormal: A Crackdown on EPO Staff and Labour Rights in 'Survey' Clothing (Willis Towers Watson)

    In a very characteristic fashion, with zero consultation/input from staff (or staff representatives/union leaders) EPO President António Campinos proceeds to implementing illegal ‘reforms’, assuring any remaining non-sceptics that he’s just another Benoît Battistelli



  14. IRC Proceedings: Saturday, November 21, 2020

    IRC logs for Saturday, November 21, 2020



  15. [Meme] Good Advice From the FSF, So It's Time to #DeleteGitHub

    A good gift for the FSF would be git; not GitHub, but git



  16. Go Distributed, Go Encrypted, Go Secure, Transparency Still Possible

    Earlier today we enhanced access to our (sometimes anonymised) IRC logs by issuing text (ASCII) versions, which will from now onwards be a nightly/daily occurrence; we're also making everything we publish accessible from a large number of IPFS nodes (akin to P2P)



  17. IAM Celebrating and Glorifying Illegal Patents With Fake 'Awards' and Bogus 'Endorsements'

    IAM's fake 'awards' are nothing more than business and agenda-steering lies; it's time to call out again the real corruption that's driving IAM (which is itself supporting and advocating corruption)



  18. Been There, Done That: Team UPC's 'October' Becomes 'Early November' and Now Late November

    The self-serving litigation fanatics who mislead their customers are still at it; Bristows says that UPC has no issues other than “delay”



  19. The Only Real Dialogue the 'European' Patent Office is Having... is With Litigation Parasites, Even Foreign Ones

    The EPO's mask falls off again, revealing a ruthless herd immunity-like mentality that welcomes patent trolls, threatens/condemns actual scientists, harms Europe and basically does a disservice to everybody



  20. Inside the EPO During Corona: SUEPO (EPO Staff Union) and the Central Staff Committee Blast the Office for Illegal Practices and Threaten Legal Action

    The Staff Union of the European Patent Office (SUEPO) and the Central Staff Committee (CSC) are escalating their tone; the management of the Office and the Organisation is running out of time as staff loses its patience and its tolerance for the repeated abuses by the administration



  21. IRC Proceedings: Friday, November 20, 2020

    IRC logs for Friday, November 20, 2020



  22. Links 21/11/2020: Coreboot 4.13, EasyOS 2.5, Wine 5.22, Gmusicbrowser 1.1.16

    Links for the day



  23. Links 20/11/2020: Xfce 4.16pre2 and Qt Releases

    Links for the day



  24. Open Letter to Mogzagain (No Worries)

    figosdev responds to a concerned reader of Techrights, who wants Free software to succeed



  25. Better Privacy Than Pretty Good Privacy

    We're getting into distributed-as-in-decentralised and encryption-enabled page distribution; we're also likely to be adopting Sequoia-PGP over time



  26. Inside the EPO During Corona: The EPO is Violating Workers'/Stakeholders' Privacy and Breaking Data Protection Law (Again)

    There's no respect for the law or for the dignity/privacy of EPO staff; whenever the subject is being brought up there's nothing but stonewalling and the Data Protection Officer is a friend of the offender, who would be reluctant to oversee anything



  27. Conduct of EPO Management Lacks “Basis in Legality” According to EPO Staff Representatives

    The ongoing assault on staff of the EPO isn't going unnoticed and for the impression of consent (acceptance of this assault) a survey is being imposed on workers (with pressure put by line managers to participate); Europe as a whole is under assault from the EPO, whose decision-making groups are entirely infiltrated by special interests (to give an impression of professional consultation)



  28. Inside the EPO During Corona: Managers Don't Think of the Children, Cut Their Budget for First Time in Half a Century

    The systematic attack on staff's rights and welfare shows no signs of stopping; the so-called 'president', who isn't even showing up for meetings with staff, has turned Europe's second-largest institution from cash cow into a cash laundering apparatus that eats its own workers



  29. IRC Proceedings: Thursday, November 19, 2020

    IRC logs for Thursday, November 19, 2020



  30. Links 20/11/2020: Mir 2.2, Istio Releases, Linux 5.9.9

    Links for the day


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts