Bonum Certa Men Certa

Microsoft -- Like David Cameron -- Attacking the Computer Security Industry

Microsoft is essentially a snitching company, unconditionally serving those in power

Police



Summary: Microsoft's latest moves that help expose its real policy when it comes to computer security and people's privacy

THE OTHER day we mentioned demands for back doors, which basically would make any piece of proprietary software (where back doors cannot be removed) utterly useless for any serious work because secure communication is a cornerstone of computing in a connected environment. We also mentioned Microsoft hiding many of its existing back doors even more aggressively, essentially telling users nothing about their easy-to-compromise systems.



"Always remember that Microsoft makes money from spying on users (government subsidies for the back door access), including in cases where this directly benefits Microsoft's business interests"This article from the British press says that this "move was criticised by some security professionals, who said it would hinder organisations’ ability to quickly test and deploy Microsoft’s updates."

They should just quit relying on Windows. Sony can tell them how reliance on Microsoft Windows already caused them to be doxxed against, potentially costing the company many billions of dollars in damages. One security-oriented professional "called the change, which was made with no advance notice, an “assault” on IT security teams."

Microsoft "assaults" the IT security industry. It attacks security itself, too. To quote further from the article: "Other industry observers said the change may have resulted from a broad reorganisation at Microsoft that began in 2013 and included large-scale layoffs in the middle of last year, with the Trustworthy Computing security group shut down in September. The reorganisation is itself the result of a broad industry shift toward mobile devices which has diminished the importance of Microsoft products such as Windows.

"Prominent figures at MSRC have left Microsoft, including senior development manager Jonathan Ness and Dustin Childs, group manager of response communications. In November Microsoft discontinued a long-running webcast in which engineers gave details on the monthly updates.

"Microsoft said in a statement that while ANS is no longer public, the company may also “take the appropriate actions to reach customers” if it determines that “broad communication” is needed for a specific situation."

So Microsoft Windows bug doors are becoming more secretive now. Nice timing given Cameron's call for back doors in everything; he would be so proud. Remember that Microsoft tells the NSA (and hence GCHQ too) about these bug doors well before they are patched, even 3 months in advance (Microsoft does not bother to patch holes until much later, if ever).

GNU/Linux is completely different because the code is visible and everyone can patch holes as soon as they are revealed. There are huge software repositories for which source code is available, so even underlying applications -- not just the operating system -- can be fixed. On Windows it is a sordid mess of random downloads of binaries from the Web and so-called 'crapware' that comes preinstalled with Windows and often has malicious behaviour. As Jim Lynch put it the other day: "I guess the bottom line here is to try to avoid being the sucker by installing crapware in the first place, regardless of the operating system you are using. If you don’t understand or aren’t sure about what’s being installed THEN DON’T INSTALL IT on your system. And only install software from trusted sources that don’t engage in the freeware bundling shenanigans."

Free software has none of these issues. The user is in charge.

Caspar Bowden, whom Microsoft fired for 'daring' to care about security and privacy, talks about Microsoft's publicity stunt case (intended to make it look like Microsoft cares about security and privacy). He now says he hopes Microsoft's publicity stunt will go down in flames and here is why: "His reasoning is that the US government can use other legal instruments, such as FISA 702 or Executive Order 12333, to brush aside such niceties as Safe Harbor or binding corporate rules (BCR) to get its hands on such data perfectly legally any time it likes, and as such the whole case is a smokescreen that actually suits both parties.

""Even if Microsoft wins that case, and I hope they don't because that'll just shore up the whole rotten system, it will make no difference to surveillance by the NSA under FISA 702 or Executive Order 12333 [see below]," he told Computing.

"Bowden - who was the chief privacy adviser to 40 national technology officers at Microsoft before he was "let go" in 2011 after revealing what FISA 702 implies for the firm's non-US customers - believes that this is all for show. It is part of a campaign of "cloudwashing" on the part of government and the industry, he says, that deliberately conflates data security - over which US cloud companies and their customers can take an active role - and government surveillance, over which, for legal reasons, they cannot. FISA 702 allows the US government to install surveillance apparatus inside the data centres of US companies. These interventions are covered by the espionage law, and anyone revealing their existence could face a lengthy jail sentence, as Yahoo's Marissa Mayer revealed."

Bowden is a Brit speaking about Ireland in the British press. We are happy to see him using the term "cloudwashing" -- a term we have used a lot for years. A lot of the pro-cloud hype is about increasing surveillance; it's often the business model. Always remember that Microsoft makes money from spying on users (government subsidies for the back door access), including in cases where this directly benefits Microsoft's business interests.

Recent Techrights' Posts

Links 27/05/2026: TSMC Workers Next to Consider Strikes, Ceasefire Cracking
Links for the day
 
2025: EPO President Campinos Breaks the Cookie Jar, Steals Another Million Euros While His "Brother-in-Law" Does Cocaine at the Office and Staff Prepares Rolling, Indefinite Strikes
any additional month of Campinos in charge of the EPO is a liability not just to the EPO but the EU as well
Gemini Links 28/05/2026: Dumping Microsoft GitHub, Gopher Rabbit Hole
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, May 27, 2026
IRC logs for Wednesday, May 27, 2026
SLAPP Censorship - Part 89 Out of 200: SRA Admits Malfunction, That's Why Transparency is Paramount
There have been more efforts than we can to count or can enumerate (probably over 100 such efforts) to gag us and to prevent us writing about what has happened
Our Free Software Activist in Connecticut (USA)
We'll soon revisit the latest round of legislation on "age" (surveillance, ID)
Links 27/05/2026: Living Without 'Smartphoones' and "Russia’s Biggest Attack on Ukraine in 18 Months"
Links for the day
Gemini Links 27/05/2026: The USA as an "Experiment" and Some Ubuntu Manuals
Links for the day
[Video] Full Video of Richard Stallman's Talk in Rome
It seems inevitable that the official GNU site will have it
Slop is a Passing Fad, It's About Faking Productivity (Plagiarism, Misinformation, and False Positives)
Slop is a bubble. Some people accept it later than others.
Anderon - Like Kyndryl - Could be Far Deeper in Debt Than Its Alleged Worth (Vapourware)
Time will tell, but it seems like a Federal-enabled (by the Federal Government) accounting scam, nothing more, nothing less
The Media That Keeps Covering "AI" Because the Pushers of It Pay for Spam
23 times in the page they mention "AI"
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, May 26, 2026
IRC logs for Tuesday, May 26, 2026
Codecs and Software Patents - Part XI - The Stance of RMS (Dr. Stallman) Reassured GNU Regarding AV1
cautioned against software patents since the early 90s if not earlier
Google: We Are Locking You Out of Your Account (Since 15+ Years Ago) Because You Don't Have a Spyphone We Remotely Control
Google (GAFAM) is an evil company deep in debt
Red Hat: Bluewashing by IBM, Followed by RAs (Layoffs)
We could use some hints or evidence related to this
Gemini Links 26/05/2026: A Year of Composting, Fedora Bricks Itself and Infuriates Users With Slop and Wayland (Not What Users Want, What IBM Wants), Crawlers on Geminispace a Nuisance
Links for the day
Links 26/05/2026: "Making the Digital Physical"; "The Medical System Abandons Women When They Are Most Vulnerable"
Links for the day
While US Government Greenlights (or Bluelights) Bailouts for IBM Some Foreign Governments Blacklist It
"Albany leadership doesn’t know what they are doing but are damn good at pretending they do."
Good Thing When Home Appliances Are Ancient Antiques
dealing with the alarm has cost only time
The Bloating of the Web Contributes to Global Warming and Causes Burnout (Slowdown, Hardware Erosion, Waste)
This problem isn't limited to weather sites or subsites
IBM Bailouts and the IBM People Inside the Administration
It seems possible/plausible that it is bailout money down the drain or that this money will never arrive at all
Links 26/05/2026: Lithium Batteries Causing Fires (Even on Planes), 'Timmy' the Whale Dies
Links for the day
Why It's Ludicrous to Call Us "Microsoft Haters"
Even if clustered together, news items still cover a broad spectrum (or spectra) of issues
Pursuing Facts in an Age of Lies and 'Hallucinations' (Falsehoods Without Anyone Accountable, They Try Calling Computer-Generated Lies or Forgeries "Intelligence").
Our aim is to relay information while bypassing gossip networks like social control media and slop in "search" clothing
Computer-Generated Legal Filings Get You Reported to the Solicitors Regulation Authority (SRA)
We'll write a lot more about this in the future
EPO "Cocaine Communication Manager" - Part XII - In the Second-Largest Institution in Europe One Can Take Paid 'Sick Leave' for Doing Cocaine, Then Come Back
Cocaine addicts in the management were bullying colleagues. They're still in charge.
Sites in Their Twenties
We currently run concurrently a handful of series and have a lot more in the backlog
SLAPP Censorship - Part 88 Out of 200: Brett Wilson LLP is Defaming Trans People in America Because Garrett Pays Hired Guns to Silence Them
Garrett is scoring many own goals this year
Sloppy "Resource Action," (RA) or IBM Layoff, Leads to Another IBM Lawsuit, Alleging IBM Tries to Pass Liability to Algorithms
IBM is meanwhile resorting to slop to gaslight its remaining shareholders
The Latest IBM Layoff Rumours
What has happened to the company that invented so much of modern computing?
Holy See Recognises the Threat of GAFAM and Slop
Will the Holy See move away from GAFAM?
The Old Ways of Computing Were Objectively Better
Not as fast, but certainly much better
Social Control Media is a Giant Waste of Time (and There Are No Future Remedies for This)
Social Control Media is considered unhealthy to young people, but it is also collectively unhealthy to nations and nation-building
Codecs and Software Patents - Part X - Florian Müller Still Muddying the Waters for FOSS, Using Software Patents
Some things never change...
Gemini Links 26/05/2026: Slop Bug Reports and Crawlers Considered Evil
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, May 25, 2026
IRC logs for Monday, May 25, 2026