Bonum Certa Men Certa

Don't Fall for Microsoft's Spin That Says Everything is Not Secure and Cannot be Secured

Video download link | md5sum a65470ffecd44d127e6ee8d7b95f2448 Security Defeatism Creative Commons Attribution-No Derivative Works 4.0



Summary: Microsoft keeps promoting the utterly false concept that everything is not secure and there's nothing that can be done about it (hence, might as well stay with Windows, whose insecurity is even intentional)

EARLIER this month we published "2022 Commences With Microsoft-Themed (and Microsoft-Connected) FUD Against GNU/Linux" and "White House Asking Proprietary Software Companies That Add NSA Back Doors About Their Views on ‘Open Source’ Security". The general theme in the media is, piggybacking the Apache bug from last month, Free software isn't secure and there's nothing to do about this because it's all about money. This past week we saw some newer FUD, capitalising on a bug report concerning some Web-based panel and systemd. Those are not "Linux" issues per se, but Microsoft-friendly media calls everything "Linux" when it suits the negative image. Examples from the past week can be found here and here (we don't want to link to them directly, giving liars traffic they do not deserve).



"Building perfectly secure systems is perfectly possible, but that typically involves stripping things down, going back to basics, just like in Gemini."In the video above I explain what a recent conversation with Richard Stallman was like, after he had basically read this claim: "Do not be fooled into accepting false claims about “security updates”. It is perfectly possible to write software that is secure from the get-go. However, it is expensive to do that. It cuts into profit. Secure software can also protect its owner from the vendor. There is an unspoken conflict of interests in all discussions around cyber-security. Big companies ship insecure software not because they are stupid, but because they intend to. They are lazy, tight and dishonest."

Building perfectly secure systems is perfectly possible, but that typically involves stripping things down, going back to basics, just like in Gemini. Sadly, projects such as GCC and Linux have become so unbelievably bloated (even LibreOffice would be shy) that no wonder they're full of defects/bugs, some of which impacting security directly and indirectly.

"Exploit codes of the NSA sometimes leak out, causing chaos and shutting down whole hospitals which rely on Windows."Can we do better than that? We can. In the video above I show some GNU programs (not “Linux commands” as pundits like to call them) and some of them from Stallman himself. These barely pose any security risks, until or unless they're plugged into bloated Linux with a network stack and loads of firmware blobs, including some that are necessary for networking to work. Much can be done about this sordid mess and there are operating systems that pour money into studying the paths of execution almost exhaustively, compacting, refactoring, optimising and perfecting code instead of just throwing more and more code into a Git repository.

This ludicrous idea that everything in computers/computing isn't secure and security is an impossibility (defeatism) overlooks the real issue, such as deliberate back doors in Microsoft's product. Exploit codes of the NSA sometimes leak out, causing chaos and shutting down whole hospitals which rely on Windows. This is the sort of debate the White House should be focusing on, but it shies away from debating its astonishingly stupid demands for back doors. Rigged or stacked panels distract from facts and flawed, shoddy products have become the norm.

Recent Techrights' Posts

Getting Better After 20 Years
Exactly two months from now this site is turning 20
Gemini Links 07/09/2026: Music Composition, Free Stuff, and Self-hosting Git Repos
Links for the day
Silent Layoffs, Cool-down, and Cool-off: How GAFAM and IBM Operate (the Law Doesn't Apply to Them)
Laws? What laws?
 
Links 07/09/2026: Slop Trashes Memory of Parton, Flock Surveillance Infuriates Everyone
Links for the day
EPO Hiding Cocainegate and Abandoning Transparency (Even Access to Very Basic Information is Denied)
The EPO isn't just becoming like a private for-profit corporation. It's also becoming more secretive.
Richard Stallman Has Resurrected Lost Updates
We didn't ask about it
SLAPP Censorship - Part 174 Out of 200: Cascading Scandals and a Path Towards Much-Needed, Long-Awaited Reform
Reform the UK's law, not "Reform UK"
EPO's Gema Requena Sempere (PD People) Contacted Regarding Children With Disabilities
In the coming week we may be in fruitful contact with some media regarding EPO scandals
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, September 06, 2026
IRC logs for Sunday, September 06, 2026
People Who Enforce the GPL Banned From Linux Foundation Board (After Bribes From Prolific GPL Violators), Now They're Banned From Giving Talks at Events
about the "LF" ('Linux' Foundation)
Gemini Links 06/09/2026: The Slop Plagiarism 'Holy War' (Hype, Scam, Scheme), Burning CD-Rs, and Hardcopy Mono
Links for the day
Solicitors Regulation Authority (SRA) Inaction and Incompetence - Part IV - Insufficient Resources in the Face of Distributed Denial of Service (DDoS) by Lawyers
it's about 120KG
OpenStreetMap is the Future, Dictatorship is the Past
OpenStreetMap helped us check maps for transport, various overlays with addresses, and there was 0% reliance on GAFAM or "Google" anything
How Strikes at the European Patent Office Are Seen by Striking Staff in Berlin, Germany
We have some more EPO scandals to cover later this year and next year
Association for Computing Machinery Cites Techrights in Relation to GemText and Gemini Protocol
published yesterday, Open Access
Links 06/09/2026: More XBox Trouble (Microsoft Unrest, Many Silent Layoffs This Month), John Duffy as Next USPTO General Counsel
Links for the day
Gemini Links 06/09/2026: Avoiding 'Smart' 'Phones' and Setting up Gemini for the First Time
Links for the day
Links 06/09/2026: Sabotage by Slop and "What Happens If 'Open' 'AI' Dies?"
Links for the day
How Back Doors Became the 'Normal' or 'Norm'
"We also allowed a lethal monoculture to fester"
Solicitors Regulation Authority (SRA) Inaction and Incompetence - Part III - The SRA is Vastly Worse Than Brits Realise, We Have a "Wild West" in London
In the next part we'll begin looking at correspondence with the SRA
SRA and Manslaughter: How the SRA Contributed to Agony in Proprietary Software Scandals With Clear Misuse of "Without Prejudice"
Trying to prevent the public from finding out the criminal stuff that went on, resulting in many deaths
Canonical (or Ubuntu) Rejecting IRC Isn't the Widespread Trend
Internet Relay Chat (IRC) adoption still growing by some yardsticks
SLAPP Censorship - Part 173 Out of 200: Two Years
It was exactly 2 years ago that we filed lawsuits against Garrett
Linux of America
We could not help but notice GNU/Linux in North America yesterday
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, September 05, 2026
IRC logs for Saturday, September 05, 2026
Gemini Links 06/09/2026: Internet Limiting (Limited Time Allotted) and Solar MiniServer
Links for the day
Eight Months of Strikes in EPO, Organised by the Staff Union (SUEPO) Also in Berlin
In Berlin, only one member of staff voted against the action plan
Links 05/09/2026: "Let’s Stop Buying New Phone" and 'Open' 'AI' (Proprietary Slop) Drowning in Lawsuits
Links for the day
Gemini Links 05/09/2026: Polarization, Warped Maps, and Emacs rectangle-number-lines
Links for the day
Software Freedom, Even If Difficult to Attain Due to Outside Pressure, Does Make You Happier
Peer pressure and opinionated employers can make friends and staff more miserable if they dictate bad software
You Can Run GNU/Linux on a Desktop/Laptop for 1,000+ Days Nonstop
To me, the long uptime is a way of "marketing" GNU/Linux as robust and stable
Profiting From Global Warming (and Making More Money the More You Cause Warming)
Unregulated bank and pyramid scheme
SLAPP Censorship - Part 172 Out of 200: The Solicitors Regulation Authority (SRA) Complicit in the SLAPPs by Inaction (Didn't Even Study Any Evidence, Only Wasted Time and Budget)
"SRA placed into special measures due to 'disappointing standard of leadership'"
China Does Not Need American (US) Products Like GAFAM's
China has abundance of technical things it can leverage to preserve its autonomy
RMS Didn't Make Enough Backups
Making backups is important
Refresher: Why EPO Staff is on Strike This Year (Aside From the EPO Acting Like a Corrupt, Above-the-Law, For-Profit Corporation That Violates Its Own Charter)
One core issue at the EPO is erosion of purchasing power
Gemini Links 05/09/2026: Fireflies, Shore Pine, and ASCII Art
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, September 04, 2026
IRC logs for Friday, September 04, 2026