Bonum Certa Men Certa

Beware the Distortion of Terms Like 'Supply Chain', 'Zero Day', and 'Back Door' (New FUD Patterns Against Free Software, a Distraction From the Real Culprits)

Proprietary software is being protected by 'googlebombing' tactics; the biggest weaknesses of proprietary software are being spun as a key problem with "Open Source" and proprietary software's shortcomings are being blamed on the alternative to it

Linux Foundation: repeat what Microsoft says



Summary: Microsofters spread misinformation/disinformation about Free software and security thereof; the corruption (bribery) of organisations such as the so-called 'Linux' Foundation means that Microsoft's misinformation/disinformation now comes out of the mouths of the supposed opposition, too

THE Daily Links in this site habitually add some "Ed"(itorial) comments to highlight FUD (Fear, Uncertainty, Doubt/fear-mongering) and offer some quick response to it. How much can publishers lie for the likes of Microsoft or VMware before those publishers perish due to a lack of credibility and, in turn, a lack of audience?



Earlier today we posted some more examples of this kind in Daily Links. Not a day goes by without several such 'incidents' (misinformation/disinformation).

"The real "supply chain" trouble is Microsoft and proprietary software..."In this post we highlight 3 recent patterns we've noticed. They are semantic lies.

Recently, a Microsoft front group called "Linux Foundation" kept using terms like "supply chain". Years ago nobody used this term in relation to Free software and then Microsoft bought a lot of the so-called 'supply chain', in the form of GitHub and then NPM. Would anyone trust the integrity of code and binaries from a platform controlled by Microsoft and the NSA, whose CSO is a decades-long NSA veteran?

The real "supply chain" trouble is Microsoft and proprietary software; you can't audit what you're getting and it might be intentionally back-doored, taking advantage of this opacity. So why pretend this is a "FOSS" issue?

"If something was fixed or was already patched upstream before disclosure, then it is not a 0-day."Speaking of back-doored code or executables, "backdoor" means not a backdoor anymore. Microsoft-controlled media distorted the term and kept mentioning it in false contexts. Nowadays it just means a server got compromised and then the person who took control of it installed some more stuff. But that's malware and it says nothing about how the malware got on the system in the first place (unless there was an actual back door).

Many would say that servers can be hijacked using critical and remotely-exploitable flaws, set aside bad passwords (those are typically a human failure). But that leads us to the distortion of the definition of "zero day" (or 0-day). If something was fixed or was already patched upstream before disclosure, then it is not a 0-day. If it starts getting exploited the moment it is disclosed, then it's a "1-day". But looking around the Web today, we found several examples of lies to that effect. The media keeps badmouthing Zimbra, but this seems to be a way to distract from several critical Microsoft flaws, including those affecting Exchange. Those are actively being exploited, according to a very recent report. the Zimbra issue is old news (about a month old) and servers have already been patched by responsible administrators, such as my colleagues. Although it seems like the Zimbra hole might be a new one, the last patch partly addresses it. Do not forget that CISA released a list with three Microsoft holes that are actively exploited, including in Exchange, so why shift/divert to talking about Zimbra rather than Exchange? Are they trying to reinforce some false perception that moving away from Exchange would mean equally bad or even worse security?

"The scenario, as per Dan Goodin et al (even sued for defamation already, for utterly poor reporting on security), is nowhere as grim as the Microsoft Exchange situation."What's bothersome here is the repeated distortion of the term "zero day". An associate told us that "'they' must be really worried about the advance of FOSS to spread so much dated FUD about Zimbra and other projects. One giveaway is the use of the marketing phrase "zero-day". That used to mean an exploit that was in active use before the vendor admitted to it existing. Now it just means bug with an exploit."

The scenario, as per Dan Goodin et al (even sued for defamation already, for utterly poor reporting on security), is nowhere as grim as the Microsoft Exchange situation. We already saw that Microsoft goes on for months and months without patching known Exchange flaws, even when it is fully informed that such flaws are actively being exploited already.

Zimbra does E-mail, so that helps distract from what Microsoft is doing, with the real zero days, the real back doors, and the real supply chain crisis. Microsoft monopolises this chain (it's proprietary) and refuses to fix it, leaving the victims helpless. This must be intentional. Or as out associate put it, "paid-for back doors on behalf of those that pay enough, or more specifically bug doors. Those are exploitable bugs about which the payers are informed long in advance of Microsoft getting around to patching them."

"Zimbra does E-mail, so that helps distract from what Microsoft is doing, with the real zero days, the real back doors, and the real supply chain crisis."It's the Windows [sic] of opportunity... Edward Snowden has already provided ample evidence of this. Microsoft keeps giving the NSA and FBI enough time to install a RAT or bootkit before the patches get deployed (too late). "And the FSB and just about any similar agency in all the other Internet-connected countries in the world," our associate noted.

So we're meant to think that the real crisis is Free software and Microsoft lobbyists then push for new, discriminatory laws that stigmatise "Open Source". New zero-day in Microsoft products? Unpatched for months while exploits circulate for months? So the Microsoft shills focus on the something that is "open source"... and repeat endlessly the terms which aren't even applicable to it.

"CISA is a Microsoft reseller working out of the DHS offices," our associated concluded, "which itself is a fraud."

Recent Techrights' Posts

Gemini Links 15/08/2026: Stress, Jetlag, and GPU Hype (Waste of Energy for Amusement, Fake 'Currencies', and Now for Mass Plagiarism)
Links for the day
Links 15/08/2026: XBox Rotting Further, "France’s Top Court Strikes Down Ban on Social Media for Children"
Links for the day
SLAPP Censorship - Part 150 Out of 200: Always Independently Verify What People Claim to Be (or Find Yourself in a Jason Arday-Type Moment/Dilemma)
I'm not a cardiologist and Garrett was never a security expert
Links 15/08/2026: "There Is No A.I." (Slop Plagiarism Isn't Intelligence) and Its "Impact on the Environment Is Absolutely Horrifying"
Links for the day
Gemini Links 15/08/2026: Gratitudes, "Microflier" Drones, and Literate Programming
Links for the day
IBM's PIPs and RAs (Layoffs) Going on, Interns as 'Scabs'
It seems like a consensus (also in Reddit, we took a quick look)
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, August 14, 2026
IRC logs for Friday, August 14, 2026
Gemini Links 14/08/2026: Slower Internet, Logging Off Made Easy, and Human Code
Links for the day
Links 14/08/2026: "Mystery of Dark Oxygen", People Despise Slop, and Backlash Grows Against Fake Currencies (Energy-Wasting Scam Like Slop)
Links for the day
Free Publicity
They say there's no such thing as "bad press" or that every publicity is good publicity, sometimes free publicity
Farage's fears, media hijacked by-election, what really happened in Clacton
Reprinted with permission from Daniel Pocock
It's Friday. A Ton of People Departing From IBM and Red Hat.
A mere subset of people who announce this in public at Microsoft's LinkedIn
GNU/Linux and ChromeOS Beyond 11%
Combined with ChromeOS, it's already past and beyond 11%
Chatbots/LLMs Are the Next "Clown Computing", Pure Hype, a Serious Mistake
Programs that scan text and emit something similar (but full of errors)
Links 14/08/2026: Slop 'Music' Causing Problems, Slop Data Centre Contractor Unpaid (Massive Debt), and The Cyber Show Says We're "Colonised By Wankers"
Links for the day
Fake Growth of Social Control Media is Misleading
nowadays people look for alternatives - ones not controlled by MElon, CPC, and Kapo-Berg
statCounter: Windows Down to All-Time Low of 25%, Android Leads the Pack, GNU/Linux About to Leapfrog Apple, Overtaking MacOS
The situation was very different in past years
Microsoft's Mass Layoffs (Including 'Voluntary' Secret Layoffs) Take Their Toll on Seattle
How much longer can they hide their crises?
Planet Fedora ("Fedora People") is Just IBM Staff, Former IBM Staff, and LLM Slop
this is what Fedora boils down to now
Explanation of What Will Happen to Red Hat (and Other Acquired Companies) After August
In short, a lot will be scuttled; history shows it happens over and over again
SLAPP Censorship - Part 149 Out of 200: It Took a Long Time to Show What Jason Arday (at Cambridge) and Harvey Weinstein (in Hollywood) Really Were
Really bad when society endures abuse because the abusers silence their exposers
Gemini Links 14/08/2026: 32-bit RISC-V and BlackBerry
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, August 13, 2026
IRC logs for Thursday, August 13, 2026
'Voluntary' Layoffs (a Form of Silent Layoffs): Microsoft Global Voluntary Separation Agreement (GVSA) in August 2026 and September 2026
Today and yesterday
Microsoft Sees Windows on Fire, Pours Gasoline Over It
The latest move from Microsoft defies logic
Racing Towards "Woman Zero"
They don't seem to value women
The Legacy of Gerstner (Rapid Destruction) Continues at IBM
They say IBM never recovered from Gerstner, who instead of saving the companies (IBM and others he claims credit for) set up a collision course of rapid shrinkage
Counters in Clacton Commence in 3 Hours at Clacton Leisure Centre
Even a few hundreds of votes for Pocock would be considered a great success
Swiss army to attack 2,900 domain name owners? Cult of ETH Zurich & Debian
Reprinted with permission from Daniel Pocock
IBM's Bluewashing of Confluent Carries on, More Layoffs Coming, Same Likely Applicable to Red Hat
September 30 is a day before this next phase of bluewashing at Red Hat
Headlines About Microsoft and Ransomware, But They're "SPONSORED FEATURES" at The Register MS
The Register MS habitually publishes LLM slop too
Links 13/08/2026: K-pop Suicide Due to Social Control Media, Legal Problems for Facebook Over Safety
Links for the day
'Cancel Culture' Isn't About Empathy, It's About Making Good People Homeless
Seeing what they did to RMS, remember that those "concern trolls" are about everything other than ethics and morals
Daniel Pocock in The Nerve
Lots of publicity owning to the enrollment
Why Support Daniel Pocock
Our readers who come from IBM and the EPO are certainly familiar with the tactics of censorship and what that sort of censorship leads to
SLAPP Censorship - Part 148 Out of 200: The Manosphere
Those people don't just threaten our national sovereignty, press, democracy etc. They also endanger women everywhere.
Gemini Links 13/08/2026: Health, Partial Eclipse Sketches, and Guilelessness
Links for the day
GNU/Linux Reaches 10% "Market Share" in statCounter
As of this morning
15% of IBM Marked for Potential Termination, PIPs are the "New Layoffs" (or RAs) at IBM
IBM is a dying company, but it does not want the press to say this or for people to understand that
Links 13/08/2026: "The Rise of the Measles-Industrial Complex" and Spotify Curbs Slop
Links for the day
Daniel Pocock on Australia's 9News (Nine Entertainment)
This gives visibility to software and technology issues
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, August 12, 2026
IRC logs for Wednesday, August 12, 2026